AHKScriptScanner can help you spot RATs!
Some say there’s no such thing as bad press. Well when AutoHotkey gets mentioned as a vehicle for distributing RATs (Remote Access Trojans). In this article they discuss how someone was using FileInstall to alter installed files.
If you have an executable, you can watch this video to see a few approaches below how to decompile your script or read this post on the AHK Forum