Help
API
Feed
Maltego
Contact
Malware > 620c4544b868f283de0b838d075643c5
Is this malicious?
Yes
No
Reports
http://malwr.com/analysis/NTRiMzFlMmE4NjM0NDIzZGFm...
MD5
620c4544b868f283de0b838d075643c5
SHA1
57e08f29c04c8175d5f9c6e6e20d4327dd342c30
Filename
dnTff.exe
IPs
[
108.74.172.39
]
IPs
[
213.219.135.125
]
IPs
[
74.246.139.158
]
IPs
[
200.91.49.183
]
IPs
[
66.63.204.26
]
IPs
[
203.45.203.83
]
IPs
[
98.95.183.150
]
IPs
[
174.6.141.85
]
IPs
[
50.241.153.231
]
IPs
[
84.59.151.27
]
IPs
[
24.153.166.130
]
IPs
[
68.162.252.216
]
IPs
[
205.174.165.43
]
IPs
[
46.35.170.33
]
IPs
[
174.96.27.128
]
IPs
[
173.194.67.99
]
IPs
[
173.194.67.94
]
IPs
[
46.49.0.90
]
IPs
[
108.234.133.110
]
IPs
[
93.177.174.80
]
IPs
[
14.97.77.97
]
IPs
[
76.226
]
Domains
[
www.google.com
]
[
www.google.nl
]
IP Addresses
[
108.74.172.39
]
[
213.219.135.125
]
[
74.246.139.158
]
[
200.91.49.183
]
[
66.63.204.26
]
[
203.45.203.83
]
[
98.95.183.150
]
[
174.6.141.85
]
[
50.241.153.231
]
[
84.59.151.27
]
Antivirus
[
HeurEngine.ZeroDayThreat
]
[
Heuristic.LooksLike.Win32.Suspicious.B
]
[
Hlux.ZY
]
[
Mal/Generic-S
]
[
Malware.Packer.ORPC
]
[
PWS-Zbot-FBDT!620C4544B868
]
[
PWS:Win32/Zbot.gen!AM
]
[
Suspicious.Cloud.5
]
[
Trojan-Spy.Win32.Zbot.orcu
]
[
Trojan/Win32.Zbot
]
Please enable JavaScript to view the
comments powered by Disqus.
Data with thanks to
AlienVault OTX
,
VirusTotal
,
Malwr
and
others
. [
Sitemap
]