A forum for reverse engineering, OS internals and malware analysis 

Forum for completed malware requests.
 #16695  by 360Tencent
 Mon Nov 19, 2012 8:57 am
Trojan.Foxy

MD5: 6f454bcb0d9627696be8d346689db064
SHA1: 9480b7a88e4c4308bb0e39a758500dbeae1ebdce

VT https://www.virustotal.com/file/a371a8f ... 348255941/

[quoteNote: The hash values above do not match the hash values listed on the Virus Total website. The obfuscated C2 (command and control) address was changed in the sample that was submitted to Virus Total. The hash values above are the correct hashes for the sample with the original obfuscated C2 address.][/quote]

Reference

http://www.cyberesi.com/2012/09/21/trojan-foxy-des/
 #16697  by Xylitol
 Mon Nov 19, 2012 9:02 am
Can't find the md5/sha1 hashs, seem nowhere, old version and 'bad.exe' in attach
Attachments
infected
(8.07 KiB) Downloaded 51 times