File Search Engine
  • Search
  • Syntax
  • Fields
  • API
  • 106.75.214.186 · MAS_AIO.cmd.exe

    /xbzsg/

    China · China Unicom Shanghai network

    Yara Suspicious_PowerShell_WebDownload_1 From Florian Roth by Florian Roth (Nextron Systems)
    Download archived sample
    The password is "infected"

    SHA1: f88d64c04945cf70562e5f0467bf8f4646315a5d
    SHA256: 1aeecf579c966597fefdacb9616a0ec01b4338ab933abffc8867761609e6b6c4
    application/x-msdownload
    741.54KB
    2025-11-24 04:29:19 +0000 UTC