Funny run.vbs
I did not scan with anything yet.
But, for sure its a simple download script.
Simple as in a 10 liner. Try to decode ?
Check this out :)
I did not scan with anything yet.
But, for sure its a simple download script.
Simple as in a 10 liner. Try to decode ?
Check this out :)
File Name : b.exe
File Type : MS-DOS executable PE for MS Windows (GUI) Intel 80386 32-bit
MD5 : 484e0bad5a6275ca0c6b5d249531bd09
PEiD : Nothing Found
Panda Says : Trj/CI.A
File Name : kilav8.exe
File Type : MS-DOS executable PE for MS Windows (GUI) Intel 80386 32-bit
MD5 : 5d64fc8c9f9ac4eeee9ea33fabace18b
PEiD : BobSoft Mini Delphi -> BoB / BobSoft
Panda Says : Trj/CI.A
File Name : active.exe
File Type : MS-DOS executable PE for MS Windows (GUI) Intel 80386 32-bit
MD5 : e428171c7985d728512f460dd17da960
PEiD : nSPack 3.7 -> North Star/Liu Xing Ping
Panda Says : Trj/Dropper.AIM
File Name : 8888.exe
File Type : MS-DOS executable PE for MS Windows (GUI) Intel 80386 32-bit, RAR self-extracting archive
MD5 : 64ccbb7d5ecc2df81c3f35dfa508ef9c
Last Update : 5th June 2009
Panda Says : Adware/Cinmus
File Name : k[5].exe
File Type : MS-DOS executable PE for MS Windows (GUI) Intel 80386 32-bit, UPX compressed
MD5 : 9fff36bf007aa124fc3693cfcbaf909f
Last Update : 5th June 2009
Panda Says : Trj/Lineage.BZE