And here's the Jar
Attachments
password: infected
(30.38 KiB) Downloaded 115 times
(30.38 KiB) Downloaded 115 times
A forum for reverse engineering, OS internals and malware analysis
Blaze wrote:(Most probably) CVE-2013-0431 in attach.Thanks for sharing, can you attach executable payload?
Related blogpost: http://bartblaze.blogspot.com/2013/03/e ... where.html
Blaze wrote:All files gathered as mentioned in blogpost (+ today's files) attached.Unpacked Cutwail in attach.
Payload: xydyswylmylh.exe
MD5: 22f3c0fd2a5d9e1799699097836bb5dc