A forum for reverse engineering, OS internals and malware analysis 

 #13529  by rkhunter
 Wed May 30, 2012 5:41 am
p4r4n0id wrote:Hi Guys,

looking for the following MD5:

2443413c2c9be6ccacf7f2b998e0c800
dd307023e73044caa247b3b495391524
6E636A86A5838BC51E2AB1DDD503148D

Thx
2443413c2c9be6ccacf7f2b998e0c800
dd307023e73044caa247b3b495391524
In attach.
Seems some downloaders.
Attachments
pass:infected
(32.19 KiB) Downloaded 45 times
 #13533  by p4r4n0id
 Wed May 30, 2012 11:59 am
@ rkhunter: thx alot bro!

any chance you know the source of these files?which exploitkit?
rkhunter wrote:
p4r4n0id wrote:Hi Guys,

looking for the following MD5:

2443413c2c9be6ccacf7f2b998e0c800
dd307023e73044caa247b3b495391524
6E636A86A5838BC51E2AB1DDD503148D

Thx
2443413c2c9be6ccacf7f2b998e0c800
dd307023e73044caa247b3b495391524
In attach.
Seems some downloaders.
 #13534  by rkhunter
 Wed May 30, 2012 12:23 pm
p4r4n0id wrote: any chance you know the source of these files?
minimal, samples already 3 month old...