Some of the long time tdl hosts seemed to have moved on. Someone sent me this although VMs not working after :( so atm although it says v3.273, I'm not sure what advancement this has if any. Various anti-malwares sites blocked including mbam, sb.
edit : nothing new here this seems to come from similar sample that EP posted earlier. Modified 3.273 and changed tdlcmd.dll.
[main]
version=3.273
id=
installdate=
reboots=1
[injector]
*=tdlcmd.dll
Indeed contains fully working x64 loader driver.Interesting, looking for samples, loading new vms.
edit : nothing new here this seems to come from similar sample that EP posted earlier. Modified 3.273 and changed tdlcmd.dll.
Attachments
pass=infected
(105.87 KiB) Downloaded 97 times
(105.87 KiB) Downloaded 97 times
Last edited by Meriadoc on Fri Aug 20, 2010 9:01 pm, edited 4 times in total.
Who controls the past controls the future
Who controls the present controls the past
Who controls the present controls the past