A forum for reverse engineering, OS internals and malware analysis 

Forum for analysis and discussion about malware.
 #21172  by evild3ad
 Sun Oct 13, 2013 1:22 pm
Hi,

I've got this sample of the Matsnu loader as file attachment via spam...it comes with the banking trojan Urlzone. I've analyzed especially the mobile add-on of Urlzone.

http://www.evild3ad.com/3008/analysis-o ... o-urlzone/

Best regards
-evild3ad-

PW = infected
Attachments
APK
(69.84 KiB) Downloaded 89 times
Dropper
(58.64 KiB) Downloaded 64 times