s2
--:--:--UTC

Searching APEX

Starting…

  1. ○ Searching Threats, IOCs & Threat Intelligence locally
  2. ○ Querying external providers
  3. ○ Asking AI Forensic Validator
  4. ○ Creating new entry from validated hit

0s elapsed

MB-82b93437fd4da23a022c56b0669669a21a06ab576b837ab3acb6cd8873185b22 high

📛 Threat Title

Adware.Generic: AdobeReader2600331790.exe

Category: Adware.Generic Published: Source updated: First seen: Last updated: Source: Abuse.ch

Description

File type: exe. Size: 22312320 bytes. Tags: Adware.Generic, exe, signed. Reporter: cocaman. First seen: 2026-09-25 11:23:38.

Indicators of Compromise (4)

Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.

hash_imphash e569e6f445d32ba23766ad67d1e3787f

IOC database

Type
hash_imphash
Value
e569e6f445d32ba23766ad67d1e3787f
First seen
Last seen
Attached to this threat
Appears in
5 threats

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

hash_sha256 82b93437fd4da23a022c56b0669669a21a06ab576b837ab3acb6cd8873185b22 VT: VT base fetch failed: HTTPError: 401 Client Error: Unauthorized for url: https://www.virustotal.com/api/v3/files/82b93437fd4da23a022c56b0669669a21a06ab576b837ab3acb6cd8873185b22

IOC database

Type
hash_sha256
Value
82b93437fd4da23a022c56b0669669a21a06ab576b837ab3acb6cd8873185b22
First seen
Last seen
Attached to this threat
Appears in
1 threat
Description
Adware.Generic

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

VirusTotal: VT base fetch failed: HTTPError: 401 Client Error: Unauthorized for url: https://www.virustotal.com/api/v3/files/82b93437fd4da23a022c56b0669669a21a06ab576b837ab3acb6cd8873185b22

hash_sha1 a551c5f920863726d77a635405f900505de62a27 VT 4 / 75

IOC database

Type
hash_sha1
Value
a551c5f920863726d77a635405f900505de62a27
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Flagged by 4 of 75 VirusTotal vendors

VendorVerdictDetection
APEX malicious Malicious
CrowdStrike malicious win/malicious_confidence_60% (D)
Lionic malicious Trojan.Win32.Adware.Generic.4!c
McAfeeD malicious ti!82B93437FD4D

Details From VirusTotal

Basic Properties
MD5aa20886abaa7ca8b7ef8f84acbfd4848
SHA-1a551c5f920863726d77a635405f900505de62a27
SHA-25682b93437fd4da23a022c56b0669669a21a06ab576b837ab3acb6cd8873185b22
VHash0270a6665d5c0d5d151c009016z641z25zbaz1003cz3
SSDEEP393216:0YysS0eb86GDeAQCncf5Dly2ZI+K0DsjVnFv/N1BW8ywRKKCFdGn0I+o93:FHjDeAQPRDla+l+F3N1hCFgn0IP
TLSHT17B27333FF198E53EC49E1A7145738220997B7A60B41A8C0FA7FC745DCF275611E3AA22
File typeWin32 EXE
File type tagpeexe
File extensionexe
MagicPE32 executable (GUI) Intel 80386, for MS Windows
File size21.3 MB
History
Creation date2023-02-15 14:54 UTC
First seen on VirusTotal2026-09-15 01:08 UTC
Last submission2026-09-25 14:00 UTC
Last analysis2026-09-25 12:53 UTC
Last modified on VirusTotal2026-09-25 14:55 UTC
Known Names
  • 82b93437fd4da23a022c56b0669669a21a06ab576b837ab3acb6cd8873185b22.exe
  • v6cyjzxx.exe
  • Quickbook-Reactivation-Agent-instructions.exe
  • Your_Social_Security_Statement-PDF.exe
hash_md5 aa20886abaa7ca8b7ef8f84acbfd4848 VT 4 / 75

IOC database

Type
hash_md5
Value
aa20886abaa7ca8b7ef8f84acbfd4848
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Flagged by 4 of 75 VirusTotal vendors

VendorVerdictDetection
APEX malicious Malicious
CrowdStrike malicious win/malicious_confidence_60% (D)
Lionic malicious Trojan.Win32.Adware.Generic.4!c
McAfeeD malicious ti!82B93437FD4D

Details From VirusTotal

Basic Properties
MD5aa20886abaa7ca8b7ef8f84acbfd4848
SHA-1a551c5f920863726d77a635405f900505de62a27
SHA-25682b93437fd4da23a022c56b0669669a21a06ab576b837ab3acb6cd8873185b22
VHash0270a6665d5c0d5d151c009016z641z25zbaz1003cz3
SSDEEP393216:0YysS0eb86GDeAQCncf5Dly2ZI+K0DsjVnFv/N1BW8ywRKKCFdGn0I+o93:FHjDeAQPRDla+l+F3N1hCFgn0IP
TLSHT17B27333FF198E53EC49E1A7145738220997B7A60B41A8C0FA7FC745DCF275611E3AA22
File typeWin32 EXE
File type tagpeexe
File extensionexe
MagicPE32 executable (GUI) Intel 80386, for MS Windows
File size21.3 MB
History
Creation date2023-02-15 14:54 UTC
First seen on VirusTotal2026-09-15 01:08 UTC
Last submission2026-09-25 14:00 UTC
Last analysis2026-09-25 12:53 UTC
Last modified on VirusTotal2026-09-25 14:55 UTC
Known Names
  • 82b93437fd4da23a022c56b0669669a21a06ab576b837ab3acb6cd8873185b22.exe
  • v6cyjzxx.exe
  • Quickbook-Reactivation-Agent-instructions.exe
  • Your_Social_Security_Statement-PDF.exe

References (1)

  • MalwareBazaar sample page Abuse.ch

    File type: exe. Size: 22312320 bytes. Tags: Adware.Generic, exe, signed. Reporter: cocaman. First seen: 2026-09-25 11:23:38.

Remediations (10)

  • web:cybersecuritynews.com

    Fake Adobe Acrobat downloads trick users into installing ScreenConnect via stealthy malware using obfuscation and privilege escalation.

  • web:forums.malwarebytes.com

    Hi, I'm using adwcleaner. And it detected an advertising virus. I quarantine it, but it doesn't. When I scan again, that virus comes up again. Please help, I have an adware virus on my computer that cannot be deleted. 20240113_113633.mp4

  • web:helpx.adobe.com

    Adobe has released a security update for Adobe Acrobat and Reader for Windows and macOS. This update addresses critical, important, and moderate vulnerabilities that could result in arbitrary code execution, privilege escalation, arbitrary file system read, arbitrary file system write, memory exposure, and application denial-of-service. Adobe is not aware of any exploits in the wild for any of ...

  • web:malwaretips.com

    This page contains instructions on how to remove Adware.Generic virus from Windows 8, Windows 7, Windows Vista and Windows XP.

  • web:malwaretips.com

    This page contains step by step instructions on how to remove Adware Generic virus from Windows 10, Vista, 7 and 8.

  • web:windows101tricks.com

    Learn how to remove browser hijackers and adware from Windows for free using built‑in tools and trusted cleaners like Malwarebytes AdwCleaner and Microsoft Defender.

  • web:www.malwarebytes.com

    Learn about adware and how to protect yourself from this threat.

  • web:www.malwarebytes.com

    Download Malwarebytes AdwCleaner for free to remove adware, bloatware, unwanted toolbars, and other potentially unwanted programs (PUPs) from your Windows PC. AdwCleaner destroys adware and restores your PC's performance.

  • web:www.wikihow.com

    Click "Removal" to view instructions. The first set of instructions pertains to users of Symantec security software. If you don't use their software, scroll to the second step and follow the removal instructions as indicated. All adware is different, and some are more difficult to remove than others.

  • web:www.wintips.org

    A web browser adware and hijacker program is any malicious program that modifies your browser search settings and your home (start) page with results of browser redirects to unknown pages or advertisements.

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.