Jump to content

Malwarebytes

CC2E826681142D313F32115EBE4E26DA


1 reply to this topic

#1
ZeroSecurity

    New Member

  • Members
  • Pip
  • 24 posts
  • Gender:Male
Found on youtube video, currently UD on Malwarebytes database.

Coded in: C#/VB.NET

File: RunescapeBot V1.08 Setup.exe
Size: 938496
MD5: CC2E826681142D313F32115EBE4E26DA
Path: C:\Users\Zher0\Downloads\RunescapeBot V1.08



DNS REQUESTS:

edis22.no-ip.biz:184.171.198.41
edis22.no-ip.biz:184.171.198.41

One file droped + added to startup:

Startup name: Spoof Service
File: taskmgr.exe
Size: 938496
MD5: CC2E826681142D313F32115EBE4E26DA
Path: C:\Users\Zher0\AppData\Local\Temp\taskmgr.exe - DETECTED by malwarebytes but not on direct scan
Microsoft Visual C# / Basic .NET

Same MD5 hash but malwarebytes only detects in temp directory.

VT:

Detection ratio: 8 / 42

https://www.virustot...sis/1336622645/

Posted Image


#2
sUBs

    Forum Deity

  • Moderators
  • PipPipPipPipPipPip
  • 7,152 posts
Thank you for your help. Attached file will be verified.
sUBs
Research Engineer

Posted Image

Follow us: Twitter, Become a fan: Facebook





1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users

Follow Us