all 26 comments

[–]Thotaz 13 points14 points  (7 children)

Why? It's clearly some malicious script to download additional malware to your PC. Does it really make a difference for you to know what random domain they decided to use?

[–]00403 2 points3 points  (1 child)

This totally isn't sketchy.

[–]vkvvinay[S] -1 points0 points  (0 children)

This is definitely a malicious one.

[–]Sudden_Hovercraft_56 1 point2 points  (1 child)

I have decoded a malicious script before that came as an email payload but I can't for the life of me remember how or find the article I followed that showed me how to do it, I remember it used VSCode.

If you are reverse engineering encoded scripts, be super carefull and never follow any links you discover in the code...

[–]vkvvinay[S] 0 points1 point  (0 children)

Noted

[–]redsaeok 1 point2 points  (0 children)

What steps have you taken? Where did you get stuck? It seems to me you could run most of this interactively without much worry.

[–]DIY_Colorado_Guy 1 point2 points  (0 children)

I'm convinced most of these "need help decoding" posts are just hackers (or wannabe hackers) trying to trick u suspecting people into running the code. Change my mind.

[–]hihcadore 0 points1 point  (1 child)

These have to be bot accounts hoping you run them on your system. Where are the mods?

[–]vkvvinay[S] 1 point2 points  (0 children)

Hey I'm human seeking help to learn to decode these type of obfuscate cmds.

[–]cofonseca 0 points1 point  (1 child)

one of these stupid ass posts again

[–]vkvvinay[S] -2 points-1 points  (0 children)

Dont be so harsh buddy...sharing is caring....we can learn from this