Technical Information
- '19#.#23.44.138':80
- http://19#.#23.44.138/loader/uploads/243am_Doedtejq.png
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -enc UwB0AGEAcgB0AC0AUwBsAGUAZQBwACAALQBzACAAMQA2AA==' (with hidden window)
- '<SYSTEM32>\cmd.exe' /c timeout 20' (with hidden window)
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -enc UwB0AGEAcgB0AC0AUwBsAGUAZQBwACAALQBzACAAMQA2AA==
- '<SYSTEM32>\cmd.exe' /c timeout 20
- '<SYSTEM32>\timeout.exe' 20