Netskope Threat Labs

PowerShell.Agent

ATP Sandbox Adv. HeuristicsAV

This generic detection identifies malicious PowerShell scripts that perform unauthorized actions on infected systems, without attributing them to a specific family.

First seen
January 2022
Last seen
October 2026
Powershell.Agent
Alert Name
Dropped:Trojan.PowerShell.Agent.FN
Dropped:Trojan.Powershell.Agent.JC
Dropped:Trojan.Powershell.Agent.UB
Gen:Heur.PowerShell.Agent.JC
Trojan.PowerShell.Agent.AA
Trojan.PowerShell.Agent.AB
Trojan.PowerShell.Agent.AO
Trojan.PowerShell.Agent.AY
Trojan.Powershell.Agent.BL
Trojan.Powershell.Agent.BU