Hi Everybody, :)
Here i found some files from infected system.ZAccess rootkit drivers files.
File Name - 800000cb.@ and 80000000.@
File Size - 16KB
VT Link - http://www.virustotal.com/file-scan/rep ... 1319030816
MD5 : 976734129c1390447b2436a36d14dcbd
SHA1 : 7a2aa0b1273db6fddf2853b07fdd7b1f4ad79c3b
SHA256: daa5bc99959a3fe3b9e8449c175b1df28d57b859ac5ea0e389bbe8bd9022940e
ssdeep: 384:TtMI0XKhkNbXj+Z1l1NByikvZHikNNFR80:TCikN2Z1VBy3Hp80
File name - X
File Size - 59 KB
VT Link - http://www.virustotal.com/file-scan/rep ... 1318950271
MD5 : d1da221b63f0577f744b8b946d101295
SHA1 : f91dbfa1e7d0b8518c1db23a643592f94316cecb
SHA256: b6d4f12d840fd1a190b1f5e613c8b6db70ff0c6940b65772301901f9df0c62b8
ssdeep: 768:oeiMfpZzL5fNFOLtRGxETsZgZfUvq5h59kzf15C5Sp0AgD57TFQQm+SuguJ5:93LnSsZgJe
e59o+5STQ57CNu55
Malware dropped by ZAccess.
File name - mexe.com
File Size - 3.32 MB
VT Link - http://www.virustotal.com/file-scan/rep ... 1315066444
MD5 : 3c0b9c82f0a1c2528f2ee22715ba1d82
SHA1 : eda451bf50f825f4c8a15394dc562b46b31834bb
SHA256: d86f2dafdb23212bef7239fa4b54b07eaaee16244ba147f524ff5a3756722c93
ssdeep: 49152:wTdh8jgydkZkPyQtx4x6mar14tjz8VnyBA5hPKJHPKJgPKJ5PKJtPKJSPKJxcfZW:FoWP
PtxN14tj+cfI
Waiting for Expert comments. :mrgreen:
Thanks in advance.
Regards,
rough_spear. ;)
Here i found some files from infected system.ZAccess rootkit drivers files.
File Name - 800000cb.@ and 80000000.@
File Size - 16KB
VT Link - http://www.virustotal.com/file-scan/rep ... 1319030816
MD5 : 976734129c1390447b2436a36d14dcbd
SHA1 : 7a2aa0b1273db6fddf2853b07fdd7b1f4ad79c3b
SHA256: daa5bc99959a3fe3b9e8449c175b1df28d57b859ac5ea0e389bbe8bd9022940e
ssdeep: 384:TtMI0XKhkNbXj+Z1l1NByikvZHikNNFR80:TCikN2Z1VBy3Hp80
File name - X
File Size - 59 KB
VT Link - http://www.virustotal.com/file-scan/rep ... 1318950271
MD5 : d1da221b63f0577f744b8b946d101295
SHA1 : f91dbfa1e7d0b8518c1db23a643592f94316cecb
SHA256: b6d4f12d840fd1a190b1f5e613c8b6db70ff0c6940b65772301901f9df0c62b8
ssdeep: 768:oeiMfpZzL5fNFOLtRGxETsZgZfUvq5h59kzf15C5Sp0AgD57TFQQm+SuguJ5:93LnSsZgJe
e59o+5STQ57CNu55
Malware dropped by ZAccess.
File name - mexe.com
File Size - 3.32 MB
VT Link - http://www.virustotal.com/file-scan/rep ... 1315066444
MD5 : 3c0b9c82f0a1c2528f2ee22715ba1d82
SHA1 : eda451bf50f825f4c8a15394dc562b46b31834bb
SHA256: d86f2dafdb23212bef7239fa4b54b07eaaee16244ba147f524ff5a3756722c93
ssdeep: 49152:wTdh8jgydkZkPyQtx4x6mar14tjz8VnyBA5hPKJHPKJgPKJ5PKJtPKJSPKJxcfZW:FoWP
PtxN14tj+cfI
Waiting for Expert comments. :mrgreen:
Thanks in advance.
Regards,
rough_spear. ;)
Attachments
password - malware.
(663.65 KiB) Downloaded 65 times
(663.65 KiB) Downloaded 65 times