Multiple variations of USB-transmitted Trojans.
Simple obfuscated script runs under powershell.
Filename: "Fantasy Premier League.vbs"
First submission: 2013-07-30
Obfuscated script runs under wscript
Filename: "eplore.js"
Codename: KaeQrnvNzZ
First submission: 2016-11-11
Highly obfuscated script runs under wscript
Filename: "lifxnqyx.js"
First submission: 2017-02-04
Filename: "kyqkoif.js"
First submission: 2016-05-20