It checks for the presence of debuggers to avoid being analyzed by security researchers.
It launches cmd.exe and WScript.exe to execute hidden commands and establish control. Context: What is NLBrute?
Often identified as HackTool:Win32/NLBrute , Trojan.Generic , or Trojan.CoinMiner . Malicious Behavior & Capabilities