Name ac7411080aeab46a_flatout(serial).exe
Filepath C:\Windows\win32dc\FlatOut(serial).exe
Size 90.5KB
Processes 2884 (470288a8683987932909034c63de86e18ca0e7f1279249c5cdd85287b283399b.exe)
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 0f31e2e60f24de2de0b7320fa85c3e2d
SHA1 8227d105893fe313652a6b02ddde25b24aff24ca
SHA256 ac7411080aeab46a23965518900e0123c2aced3b937b27facda8497bf1b34df1
CRC32 F30EBE29
ssdeep None
Yara
  • network_irc - Communications over IRC network
  • network_dropper - File downloader/dropper
  • network_tcp_socket - Communications over RAW socket
  • network_dns - Communications use DNS
  • keylogger - Run a keylogger
  • spreading_share - Malware can spread east-west using share drive
  • win_mutex - Create or check mutex
  • win_registry - Affect system registries
  • win_private_profile - Affect private profile
  • win_files_operation - Affect private profile
VirusTotal Search for analysis
Name 053ceb6e96c1fbd5_battlefield 1942_cdfix.exe
Filepath C:\Windows\win32dc\BattleField 1942_cdfix.exe
Size 92.5KB
Processes 2884 (470288a8683987932909034c63de86e18ca0e7f1279249c5cdd85287b283399b.exe)
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 784d6e78afd73fcc31f5ef4e082aec93
SHA1 1a829d02e6f1bc1bf4c6fb92ecb2dfdef9e8d8d3
SHA256 053ceb6e96c1fbd56fc979980b03880c6b51a5414d104c4461982ce2b6575644
CRC32 811A10AF
ssdeep None
Yara
  • network_irc - Communications over IRC network
  • network_dropper - File downloader/dropper
  • network_tcp_socket - Communications over RAW socket
  • network_dns - Communications use DNS
  • keylogger - Run a keylogger
  • spreading_share - Malware can spread east-west using share drive
  • win_mutex - Create or check mutex
  • win_registry - Affect system registries
  • win_private_profile - Affect private profile
  • win_files_operation - Affect private profile
VirusTotal Search for analysis
Cuckoo

We're processing your submission... This could take a few seconds.