Details
FileName | |
---|---|
Malware Family | Sakula |
Date Added | 2016-04-24 06:49:23 |
MD5 | 489e2f533888f017aaf2a533eb45a30f |
Sha256 | ef5a1fe1ed60c66edaf139eb75aaf3ef648b64ce93311bafaff61d57821d7c85 |
Robot | Robots lovingly delivered by robohash.org |
Advertising
Config Data
1_Copy File Name | AdobeUpdate.exe |
---|---|
1_URI GET1 Folder | /photo/ |
1_AutoRun Key | AdobeUpdate |
1_Copy File Path | %Temp%\MicroMedia |
1_URI GET3 Arg | imageid |
1_Campaign ID | qzbwcl |
1_URI GET3 File | newimage.asp |
1_Domain | www.savmpet.com |
1_Waiting Time | 30000 |
1_URI GET2 File | /viewphoto.asp |
Virustotal
43 out of 58 AV Engines identified the sample as Malicious.