Technical Information
- 'x.#####spectrals.com':80
- http://x.#####spectrals.com/loader/uploads/CloudNotifications_Hxxyapkh.png
- DNS ASK x.#####spectrals.com
- '%WINDIR%\syswow64\windowspowershell\v1.0\powershell.exe' -enc WwBUAGgAcgBlAGEAZABpAG4AZwAuAFQAaAByAGUAYQBkAF0AOgA6AFMAbABlAGUAcAAoADIAMAAwADAAMAApAA==' (with hidden window)
- '%WINDIR%\syswow64\cmd.exe' /c timeout 59' (with hidden window)
- '%WINDIR%\syswow64\windowspowershell\v1.0\powershell.exe' -enc WwBUAGgAcgBlAGEAZABpAG4AZwAuAFQAaAByAGUAYQBkAF0AOgA6AFMAbABlAGUAcAAoADIAMAAwADAAMAApAA==
- '%WINDIR%\syswow64\cmd.exe' /c timeout 59
- '%WINDIR%\syswow64\timeout.exe' 59