landing pages for Reveton ransomware
https://www.botnets.fr/index.php/Reveton
https://www.botnets.fr/index.php/Reveton
A forum for reverse engineering, OS internals and malware analysis
C:\Documents and Settings\Administrator\Start Menu\Programs\Startup
ctfmon.lnk File not found: C:\Documents and Settings\All Users\Application Data\lsass.exe
mikuś wrote:md5 4fc648509619859719485ec7d8618867
please
dumb110 wrote:https://www.virustotal.com/file/882ea01 ... 350971186/
this one please.
D301h win32 main unit
8210h crtsock
C700h System
8100h SysInit
4B0Ch Windows
5510h Types
0200h SysUtils
9D10h SysConst
831Ch TlHelp32
5710h Md5
1610h Math
2210h RTLConsts
E810h RegReg
0C00h Connect
7400h MStream
8D00h Compressor
7100h LnkFile
5F00h DateUtils
3100h MemDll
1300h CRC32File
EF00h VatUnit
330Ch Messages
470Ch MMSystem
C:\WINDOWS\system32\rundll32.exe C:\Users\GEBRUI~1\wgsdgsdgdsgsd.exe,H1N1