J
Jatinder Singh Ss
After 1hr of login, this unknown task named "dA2UvL8" executes this script on Windows Powershell:--WindowStyle Hidden -ExecutionPolicy Bypass -File "C:\WINDOWS\System32\519F.tmp\51A0.tmp.ps1"This is the task = It has these triggers =Can anyone tell me if it is harmful or stealing data? and also help me remove it?In case this is not harmful then please help me identify what is causing Windows Powershell to launch, execute and disappear.
Continue reading...
Continue reading...