Malware
POWERPLANT
This powershell code is a PowerShell written backdoor used by FIN7.
This powershell code is a PowerShell written backdoor used by FIN7. Regarding to Mandiant that is was revealed to be a "vast backdoor framework with a breadth of capabilities, depending on which modules are delivered from the C2 server."
Family metadata imported from Malpedia (Fraunhofer FKIE).