Hello. I accidentally (when booting liveUSB Linux) found very strange file in Windows 7 boot partition.
It is called KWEGD , with no extension. Sha256 checksum is a199cb65b19f2385f9afa97622d78fb7d0f2d5f8018c5de96b0df50c5bc39655
Virustotal found nothing but detect it as DOS executable (COM)
But when I upload it to run HybridAnalysis (also with bootmgr) it's sandbox described it as malicious
I zipped boot partition. Can I upload it here? Not supported extension.
What it is? What should I do?
It is called KWEGD , with no extension. Sha256 checksum is a199cb65b19f2385f9afa97622d78fb7d0f2d5f8018c5de96b0df50c5bc39655
Virustotal found nothing but detect it as DOS executable (COM)
But when I upload it to run HybridAnalysis (also with bootmgr) it's sandbox described it as malicious
Free Automated Malware Analysis Service - powered by Falcon Sandbox
Submit malware for free analysis with Falcon Sandbox and Hybrid Analysis technology. Hybrid Analysis develops and licenses analysis tools to fight malware.
www.hybrid-analysis.com
I zipped boot partition. Can I upload it here? Not supported extension.
What it is? What should I do?