A forum for reverse engineering, OS internals and malware analysis 

Forum for analysis and discussion about malware.
 #22666  by nullptr
 Thu Apr 10, 2014 1:31 pm
MD5: 43DD4B2A3BD5AFFD4A3D77AE710036C2
SHA-1: 4BC8EB991C5697B02FC0D5DEB321063D5E0A5633

original + unpacked attached
Attachments
pwd: infected
(67.28 KiB) Downloaded 85 times
 #26570  by sysopfb
 Thu Aug 20, 2015 9:19 pm
couple of live Pushdo samples

C2 from binary: tyrns.com
C2 from DGA: wunmavervu.kz
Attachments
pw:infected
(158.7 KiB) Downloaded 55 times