Техническая информация
- '<SYSTEM32>\taskkill.exe' /f /im wscript.exe
- %WINDIR%\microsoft.net\framework\v4.0.30319\aspnet_compiler.exe
- <SYSTEM32>\windowspowershell\v1.0\powershell.exe
- C:\temp\ps_lcn7ylzfyhte_1772407423567.ps1
- C:\temp\ps_lcn7ylzfyhte_1772407423567.ps1
- DNS ASK fi#####.###tings.services.mozilla.com
- ClassName: '' WindowName: ''
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -ExecutionPolicy Bypass -NoProfile -WindowStyle Hidden -File "C:\Temp\ps_lCn7YLZfYhtE_1772407423567.ps1"
- '%WINDIR%\microsoft.net\framework\v4.0.30319\aspnet_compiler.exe'
- '<SYSTEM32>\taskkill.exe' /f /im wscript.exe (со скрытым окном)