Jump to content

Decode


Go to solution Solved by Jos,

Recommended Posts

Do remove the file. Otherwise this post will be locked ( and the file removed anyway )
As far as forensic study goes, you do not know enough to do anything about it, given that you can not even decompile this.

Sorry but in this forum you will not get that done.

Follow the link to my code contribution ( and other things too ).
FAQ - Please Read Before Posting.
autoit_scripter_blue_userbar.png

Link to comment
Share on other sites

  • Jos locked this topic
  • Developers
1 hour ago, Numbness said:

I think a virus was sent to me with this application, I want to see the code

 

I think you could be right, but there isn't much to see in the script, as it is totally obfuscated.
So let's stick our forum rules and not discuss decompilation of scripts. 

Thanks

SciTE4AutoIt3 Full installer Download page   - Beta files       Read before posting     How to post scriptsource   Forum etiquette  Forum Rules 
 
Live for the present,
Dream of the future,
Learn from the past.
  :)

Link to comment
Share on other sites

  • Developers
  • Solution

I took a quick look at the variables defined at the top of the master script and listed their content after de-obfuscation/computing by the script.
Hope this helps you:

googleads.publicvm.com
C:\MicrosoftSecurity
MicrosoftCMD.lnk
Microsoft
Microsoft Security
MicrosoftSecurity.exe
vbs
0.4x Usb
Microsoft.a3x
0LIONW0

 

SciTE4AutoIt3 Full installer Download page   - Beta files       Read before posting     How to post scriptsource   Forum etiquette  Forum Rules 
 
Live for the present,
Dream of the future,
Learn from the past.
  :)

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
 Share

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...