In attach.
Attachments
infected
(739.52 KiB) Downloaded 88 times
(739.52 KiB) Downloaded 88 times
A forum for reverse engineering, OS internals and malware analysis
kmd wrote:https://www.virustotal.com/en/file/dd17 ... 362572141/
pwd: infected
kmd wrote:https://www.virustotal.com/en/file/762a ... 362572147/Both fat Kelihos with winpcap and other trash inside. Posts moved.
pwd infected
2013/04/20 13:51 13,239 492.jar 4dc7500eaec309ff784149e71c0c005d
2013/04/20 15:01 47,256 aeraetk.exe fc476c4b8653f12e041b8ac8b4e0af8b
2013/04/20 18:50 32,256 clicka.exe f842cbd8e80bdb20d23befda68ebd0c6
2013/04/20 13:51 13,239 dp4.jar 4dc7500eaec309ff784149e71c0c005d
2013/04/20 18:52 815,616 game.exe de31ba7f73743c461deca7e581b1db42
2013/04/20 15:57 816,128 newbos3.exe eea68bb70a1f186112286cba9c3e5271
2013/04/20 13:35 800 news.html 3991f5494d24426712a96cf4c79341b8
2013/04/20 18:50 48,280 psaopt.exe b454175a3bd4fca65a56c65d54a4bca1
2013/04/20 18:50 815,616 temp22.exe b1d96baaa91fde31f78387454c377cae
2013/04/20 18:50 815,616 temp43.exe de31ba7f73743c461deca7e581b1db42
2013/04/20 18:50 815,616 temp72.exe cf90325492e65913ea58d83a7aef2391
2013/04/20 18:50 815,616 temp74.exe ed575b987a1de74a71f8afe0cd3ee21c
2013/04/20 13:46 202 wesq.html 482cc64c0383ff054b7745b52f6eda25
2013/04/20 15:01 32,768 xywewey.exe 59320fde47334183fc54659dc03a7f38
The download of samples is HERETop Ranking of Spam Landing IP per country: (1st level web infector BEFORE RedKits)
1. Ukraine
2. Bulgaria
3. Russia
4. Serbia
5. Latvia