Systematically deobfuscate multi-layer PowerShell malware using AST analysis, dynamic tracing, and tools like PSDecode and PowerDecode to reveal hidden payloads and C2 infrastructure.
Installs into .claude/skills of the current project.
Are you the author of Cyber Deobfuscating Powershell Obfuscated Malware?
Add the live security badge to your README. It updates with every re-scan.
[](https://www.skillsdirectory.com/skills/nexuslinkproductions-cyber-deobfuscating-powershell-obfuscated-malware)
---
name: cyber-deobfuscating-powershell-obfuscated-malware
description: "Systematically deobfuscate multi-layer PowerShell malware using AST analysis, dynamic tracing, and tools like PSDecode and PowerDecode to reveal hidden payloads and C2 infrastructure."
hide: true
---
<!-- GENERATED:YURI-CODEX-SKILL-ADAPTER:v1 -->
# YURI skill adapter
Authoritative source: `.claude/skills/cyber-deobfuscating-powershell-obfuscated-malware/SKILL.md`
Authoritative source SHA-256: `1d9fb232e93c43b19364da6ee939b587ce1570e8c52552e67bd8d8186378fda5`
Source class: `cyber-armed`
Before acting, read the authoritative source file above completely from beginning to end. If the governed source is absent, run `node _SYSTEM/Scripts/skill-recall.mjs --show cyber-deobfuscating-powershell-obfuscated-malware` and read its complete verified output. Follow that source as the skill body; this adapter is a non-authoritative metadata-and-pointer projection.