A forum for reverse engineering, OS internals and malware analysis 

Forum for analysis and discussion about malware.
 #13782  by kmd
 Thu Jun 07, 2012 2:15 am
overall flame is interesting piece of malware, puzzle, no doubt
but this marketing hype from kaspersky is ><

there is rumor this kaspersky global butthurt (EK hysterics and apocapypce 2012 edition) caused by their marketing fuckup with flashback malware earlier this year.
 #13789  by frame4-mdpro
 Thu Jun 07, 2012 8:47 am
notkov wrote:browse32.ocx
Thanks -- for those who get archive corrupted message, rename .7z to .zip and it works -- pass : infected ;)
 #13804  by rkhunter
 Fri Jun 08, 2012 6:18 am
Flamer droppers collection (MSSECMGR.OCX):

MD5: 37c97c908706969b2e3addf70b68dc13
http://www.kernelmode.info/forum/viewto ... 530#p13530

MD5: bdc9e04388bda8527b398a8c34667e18
http://www.kernelmode.info/forum/viewto ... =20#p13503

And 3 others with smaller size in attach.

0a17040c18a6646d485bde9ce899789f
b51424138d72d343f22d03438fc9ced5
e5a49547191e16b0a69f633e16b96560
Attachments
pass:infected
(1.37 MiB) Downloaded 127 times
  • 1
  • 8
  • 9
  • 10
  • 11
  • 12
  • 14