Malcole-B

Category: Adware and PUAs Protection available since:17 Jan 2013 20:10:35 (GMT)
Type: Adware Last Updated:17 Jan 2013 20:10:35 (GMT)

Download Download our free Virus Removal Tool - Find and remove threats your antivirus missed

Examples of Malcole-B include:

Example 1

File Information

Size
54K
SHA-1
0003558bde8e6924b44399c1d725bec368854fa2
MD5
66bfbee4912ef04e41af7256299a29d0
CRC-32
3a4b3431
File type
Windows executable
First seen
2011-03-04

Other vendor detection

Kaspersky
not-a-virus:AdWare.Win32.Stud.alb

Runtime Analysis

HTTP Requests
  • http://browser-checker.com/go/fl/archiv.to/0394093a7512e6f48695f53d6132b1fa/4b548bf4-601f769f-47af2515-56b177fd-4c022957
DNS Requests
  • browser-checker.com

Example 2

File Information

Size
54K
SHA-1
02fac14bc77d7480a835ae4ba0eef85a18c5ab27
MD5
67842f76e18f9bdad57f27c8e0358ba8
CRC-32
f509c980
File type
Windows executable
First seen
2011-03-07

Other vendor detection

Kaspersky
not-a-virus:AdWare.Win32.Stud.alb

Runtime Analysis

Dropped Files
  • C:\WINDOWS\system32\kbdcz32.exe
    Size
    16K
    SHA-1
    940e77e2b01709da1e20fcbfcb944d359443ae6a
    MD5
    3ca4c932ccb77472c29affa98a8a55b3
    CRC-32
    812898b7
    File type
    Windows executable
    First seen
    2011-01-29
Registry Keys Created
  • HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce
    RunOnce
    C:\WINDOWS\system32\kbdcz32.exe
  • HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache\MSHist012011030720110308
    CacheRepair
    0x00000000
HTTP Requests
  • http://browser-checker.com/go/vl/video-to.com/
  • http://browser-checker.com/go/vl/video-to.com/0309d158f414d275db40c50c71e903fb/4b548bf4-601f769f-47af2515-56b177fd-4c022957
  • http://videodl.org/
DNS Requests
  • browser-checker.com
  • videodl.org

Example 3

File Information

Size
54K
SHA-1
0375bd833923ef11180a161168970369e8fa785c
MD5
67a701a392009b0f1e0f7a1e8a245227
CRC-32
5b6896b0
File type
Windows executable
First seen
2011-03-07

Other vendor detection

Kaspersky
not-a-virus:AdWare.Win32.Stud.alb

Runtime Analysis

HTTP Requests
  • http://www.browser-checker.com/go/fl/archiv.to/174cedb3d773a5c65ca0498dddd11ae3/4b548bf4-601f769f-47af2515-56b177fd-4c022957
DNS Requests
  • www.browser-checker.com

download Try Sophos products for free
Download now