Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- * MalFamily: ""
- * MalScore: 10.0
- * File Name: "Exes_88416f55ada55090882869271f822a07.msi"
- * File Size: 913408
- * File Type: "Composite Document File V2 Document, Little Endian, Os: Windows, Version 10.0, MSI Installer, Code page: 1252, Title: system security updates - UNREGISTERED - Wrapped using MSI Wrapper from www.exemsi.com 8.6.0.4, Subject: system security updates - UNREGISTERED - Wrapped using MSI Wrapper from www.exemsi.com, Author: forwhy, Keywords: Installer, Template: Intel;1033, Revision Number: AF2883F7-242A-467D-8106-81CCF08849C9 Create Time/Date: Wed Apr 10 09:26:06 2019, Last Saved Time/Date: Wed Apr 10 09:26:06 2019, Number of Pages: 200, Number of Words: 2, Name of Creating Application: MSI Wrapper (9.0.30.0), Security: 2"
- * SHA256: "21477b1e7413309bc96e8d64d7af3837723e8f5ec53baae31ab1bd5d3ad2fe3d"
- * MD5: "88416f55ada55090882869271f822a07"
- * SHA1: "aa9ba8a9f6fecacf3db8a0012cd86f791c3f04b9"
- * SHA512: "92e06e7410696cf8732a6a4ec2bad097394f8a2bdff7ad33549531e89a33b8d973c4624a474be3681a2196241f833b49a05e3208bf5fa6572cbda194d38b31eb"
- * CRC32: "23CCBF6C"
- * SSDEEP: "24576:0OognqtV7DnxZrwava5hUtxk7z0FOAsbzW:0OogmV7DxZ0aS5aDKzC"
- * Process Execution:
- * Executed Commands:
- * Signatures Detected:
- "Description": "File has been identified by 17 Antiviruses on VirusTotal as malicious",
- "Details":
- "FireEye": "Gen:Variant.Graftor.620841"
- "McAfee": "GenericRXHV-UI!27CCF5E78F91"
- "Arcabit": "Trojan.Graftor.D97929"
- "Avast": "Win32:CrypterX-gen Trj"
- "BitDefender": "Gen:Variant.Graftor.620841"
- "NANO-Antivirus": "Trojan.Win32.Stealer.fsjzbx"
- "Emsisoft": "Gen:Variant.Graftor.620841 (B)"
- "F-Secure": "Heuristic.HEUR/AGEN.1042238"
- "DrWeb": "Trojan.PWS.Stealer.19347"
- "Invincea": "heuristic"
- "Antiy-AVL": "GrayWare/Win32.Generic"
- "Microsoft": "Trojan:Win32/Fuerboos.A!cl"
- "GData": "Gen:Variant.Graftor.620841"
- "MAX": "malware (ai score=87)"
- "ESET-NOD32": "a variant of Win32/GenKryptik.DMME"
- "Rising": "Trojan.GenKryptik!8.AA55 (TFE:dGZlOgXfmdwUzvErsA)"
- "AVG": "Win32:CrypterX-gen Trj"
- * Started Service:
- * Mutexes:
- * Modified Files:
- * Deleted Files:
- * Modified Registry Keys:
- * Deleted Registry Keys:
- * DNS Communications:
- * Domains:
- * Network Communication - ICMP:
- * Network Communication - HTTP:
- * Network Communication - SMTP:
- * Network Communication - Hosts:
- * Network Communication - IRC:
Advertisement
Add Comment
Please, Sign In to add comment