MB-82b93437fd4da23a022c56b0669669a21a06ab576b837ab3acb6cd8873185b22
high
📛 Threat Title
Adware.Generic: AdobeReader2600331790.exe
Description
File type: exe. Size: 22312320 bytes. Tags: Adware.Generic, exe, signed. Reporter: cocaman. First seen: 2026-09-25 11:23:38.
Indicators of Compromise (4)
Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.
hash_imphash
e569e6f445d32ba23766ad67d1e3787f
IOC database
- Type
- hash_imphash
- Value
e569e6f445d32ba23766ad67d1e3787f- First seen
- Last seen
- Attached to this threat
- Appears in
- 5 threats
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
hash_sha256
82b93437fd4da23a022c56b0669669a21a06ab576b837ab3acb6cd8873185b22
VT: VT base fetch failed: HTTPError: 401 Client Error: Unauthorized for url: https://www.virustotal.com/api/v3/files/82b93437fd4da23a022c56b0669669a21a06ab576b837ab3acb6cd8873185b22
IOC database
- Type
- hash_sha256
- Value
82b93437fd4da23a022c56b0669669a21a06ab576b837ab3acb6cd8873185b22- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
- Description
- Adware.Generic
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
VirusTotal: VT base fetch failed: HTTPError: 401 Client Error: Unauthorized for url: https://www.virustotal.com/api/v3/files/82b93437fd4da23a022c56b0669669a21a06ab576b837ab3acb6cd8873185b22
hash_sha1
a551c5f920863726d77a635405f900505de62a27
VT 4 / 75
IOC database
- Type
- hash_sha1
- Value
a551c5f920863726d77a635405f900505de62a27- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Flagged by 4 of 75 VirusTotal vendors
| Vendor | Verdict | Detection |
|---|---|---|
| APEX | malicious | Malicious |
| CrowdStrike | malicious | win/malicious_confidence_60% (D) |
| Lionic | malicious | Trojan.Win32.Adware.Generic.4!c |
| McAfeeD | malicious | ti!82B93437FD4D |
Details From VirusTotal
Basic Properties
| MD5 | aa20886abaa7ca8b7ef8f84acbfd4848 |
| SHA-1 | a551c5f920863726d77a635405f900505de62a27 |
| SHA-256 | 82b93437fd4da23a022c56b0669669a21a06ab576b837ab3acb6cd8873185b22 |
| VHash | 0270a6665d5c0d5d151c009016z641z25zbaz1003cz3 |
| SSDEEP | 393216:0YysS0eb86GDeAQCncf5Dly2ZI+K0DsjVnFv/N1BW8ywRKKCFdGn0I+o93:FHjDeAQPRDla+l+F3N1hCFgn0IP |
| TLSH | T17B27333FF198E53EC49E1A7145738220997B7A60B41A8C0FA7FC745DCF275611E3AA22 |
| File type | Win32 EXE |
| File type tag | peexe |
| File extension | exe |
| Magic | PE32 executable (GUI) Intel 80386, for MS Windows |
| File size | 21.3 MB |
History
| Creation date | 2023-02-15 14:54 UTC |
| First seen on VirusTotal | 2026-09-15 01:08 UTC |
| Last submission | 2026-09-25 14:00 UTC |
| Last analysis | 2026-09-25 12:53 UTC |
| Last modified on VirusTotal | 2026-09-25 14:55 UTC |
Known Names
82b93437fd4da23a022c56b0669669a21a06ab576b837ab3acb6cd8873185b22.exev6cyjzxx.exeQuickbook-Reactivation-Agent-instructions.exeYour_Social_Security_Statement-PDF.exe
hash_md5
aa20886abaa7ca8b7ef8f84acbfd4848
VT 4 / 75
IOC database
- Type
- hash_md5
- Value
aa20886abaa7ca8b7ef8f84acbfd4848- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Flagged by 4 of 75 VirusTotal vendors
| Vendor | Verdict | Detection |
|---|---|---|
| APEX | malicious | Malicious |
| CrowdStrike | malicious | win/malicious_confidence_60% (D) |
| Lionic | malicious | Trojan.Win32.Adware.Generic.4!c |
| McAfeeD | malicious | ti!82B93437FD4D |
Details From VirusTotal
Basic Properties
| MD5 | aa20886abaa7ca8b7ef8f84acbfd4848 |
| SHA-1 | a551c5f920863726d77a635405f900505de62a27 |
| SHA-256 | 82b93437fd4da23a022c56b0669669a21a06ab576b837ab3acb6cd8873185b22 |
| VHash | 0270a6665d5c0d5d151c009016z641z25zbaz1003cz3 |
| SSDEEP | 393216:0YysS0eb86GDeAQCncf5Dly2ZI+K0DsjVnFv/N1BW8ywRKKCFdGn0I+o93:FHjDeAQPRDla+l+F3N1hCFgn0IP |
| TLSH | T17B27333FF198E53EC49E1A7145738220997B7A60B41A8C0FA7FC745DCF275611E3AA22 |
| File type | Win32 EXE |
| File type tag | peexe |
| File extension | exe |
| Magic | PE32 executable (GUI) Intel 80386, for MS Windows |
| File size | 21.3 MB |
History
| Creation date | 2023-02-15 14:54 UTC |
| First seen on VirusTotal | 2026-09-15 01:08 UTC |
| Last submission | 2026-09-25 14:00 UTC |
| Last analysis | 2026-09-25 12:53 UTC |
| Last modified on VirusTotal | 2026-09-25 14:55 UTC |
Known Names
82b93437fd4da23a022c56b0669669a21a06ab576b837ab3acb6cd8873185b22.exev6cyjzxx.exeQuickbook-Reactivation-Agent-instructions.exeYour_Social_Security_Statement-PDF.exe
References (1)
-
MalwareBazaar sample page
Abuse.ch
File type: exe. Size: 22312320 bytes. Tags: Adware.Generic, exe, signed. Reporter: cocaman. First seen: 2026-09-25 11:23:38.
Remediations (10)
-
web:cybersecuritynews.com
Fake Adobe Acrobat downloads trick users into installing ScreenConnect via stealthy malware using obfuscation and privilege escalation.
-
web:forums.malwarebytes.com
Hi, I'm using adwcleaner. And it detected an advertising virus. I quarantine it, but it doesn't. When I scan again, that virus comes up again. Please help, I have an adware virus on my computer that cannot be deleted. 20240113_113633.mp4
-
web:helpx.adobe.com
Adobe has released a security update for Adobe Acrobat and Reader for Windows and macOS. This update addresses critical, important, and moderate vulnerabilities that could result in arbitrary code execution, privilege escalation, arbitrary file system read, arbitrary file system write, memory exposure, and application denial-of-service. Adobe is not aware of any exploits in the wild for any of ...
-
web:malwaretips.com
This page contains instructions on how to remove Adware.Generic virus from Windows 8, Windows 7, Windows Vista and Windows XP.
-
web:malwaretips.com
This page contains step by step instructions on how to remove Adware Generic virus from Windows 10, Vista, 7 and 8.
-
web:windows101tricks.com
Learn how to remove browser hijackers and adware from Windows for free using built‑in tools and trusted cleaners like Malwarebytes AdwCleaner and Microsoft Defender.
-
web:www.malwarebytes.com
Learn about adware and how to protect yourself from this threat.
-
web:www.malwarebytes.com
Download Malwarebytes AdwCleaner for free to remove adware, bloatware, unwanted toolbars, and other potentially unwanted programs (PUPs) from your Windows PC. AdwCleaner destroys adware and restores your PC's performance.
-
web:www.wikihow.com
Click "Removal" to view instructions. The first set of instructions pertains to users of Symantec security software. If you don't use their software, scroll to the second step and follow the removal instructions as indicated. All adware is different, and some are more difficult to remove than others.
-
web:www.wintips.org
A web browser adware and hijacker program is any malicious program that modifies your browser search settings and your home (start) page with results of browser redirects to unknown pages or advertisements.
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.