A forum for reverse engineering, OS internals and malware analysis 

Forum for analysis and discussion about malware.
 #9247  by EP_X0FF
 Tue Oct 18, 2011 4:01 pm
sugipula wrote:I need a gun
Image

here take it for free
 #9262  by EP_X0FF
 Wed Oct 19, 2011 1:49 am
markusg wrote:from infected machine.
873D3F8A93A.exe
MD5   : 853c7d138afcfa4ae7349cb9c2b22960
https://www.virustotal.com/file-scan/re ... 1318956636
SpyEye v1.3.48 (ver=10348)

Pass for decrypted config: FCA737CDF22135424EACBC5EEA2D5B3B

Gate:
hxxp://minimart20.com/forum.php;90
Unpacked dropper + decrypted configs in attach.
Attachments
pass: malware
(285.02 KiB) Downloaded 75 times
 #9270  by EP_X0FF
 Wed Oct 19, 2011 10:02 am
SpyEye v1.2.99 (ver=10299)

Pass for decrypted config: D655F000B8CAC927EB6CCE2D5C746D11

Gate:
hxxp://majmun.su/kurac/gate.php
1.6 Mb of webinjects

All data in attach.
Attachments
pass: malware
(1.04 MiB) Downloaded 94 times
  • 1
  • 29
  • 30
  • 31
  • 32
  • 33
  • 42