A forum for reverse engineering, OS internals and malware analysis 

Forum for analysis and discussion about malware.
 #30538  by AKWAN56
 Tue Jul 04, 2017 7:05 am
Hi Everyone,

I am doing the exercise from the book in the tile and I am trying to look for one sample.
MD5: bbd7d790d0ed188dec7d0ce1284ba603
SHA1: deac10f97dd061780b186160c0be863a1ae00579
The malware is identified as Exploit.MSWord.CVE-2010-3333.cp by Kaspersky.
Here is the virus total link: https://www.virustotal.com/en/file/6512 ... /analysis/

Thanks in advance!
:D
 #30553  by AKWAN56
 Sat Jul 08, 2017 7:05 am
Thank you so much! I am also looking for other two samples from the book.
The first one is a PDF malware
SHA1: 88b6a40a8aa0b8a6d515722d9801f8fb7d332482; MD5: 066c50f26a67619caae5816f96eae52d
Virus total link: https://www.virustotal.com/en/file/05d4 ... /analysis/

The second one is FlyStudio malware with SHA1 hash 405950e1d93073134bce2660a70b5ec0cfb39eab

Could you help me with those two files or tell me where I can find them?

Thanks again!
 #30556  by Cody Johnston
 Sun Jul 09, 2017 7:18 am
SHA1: 88b6a40a8aa0b8a6d515722d9801f8fb7d332482; MD5: 066c50f26a67619caae5816f96eae52d
Virus total link: https://www.virustotal.com/en/file/05d4 ... /analysis/

The second one is FlyStudio malware with SHA1 hash 405950e1d93073134bce2660a70b5ec0cfb39eab
attached
Attachments
Password: infected
(161.21 KiB) Downloaded 34 times