A forum for reverse engineering, OS internals and malware analysis 

Forum for analysis and discussion about malware.
 #22066  by Win32:Virut
 Tue Jan 28, 2014 2:01 pm
https://blog.avast.com/2014/01/27/malfo ... n-stealer/
Malicious Installer v3.5.3:
SHA256: 595D954C7CE574337C97A0801E779BC3DCA94FC92AFAE8F483DCDD1A053C5C24

Malicious FileZilla.exe v3.5.3
SHA256: 525E9ED135C1435772A774D7AD7168CECCD225E354118E621482DB61174F6734

Malicious Installer v3.7.3
SHA256: B9A12F9B6827144D84E65EF2BA454D77CB423C5E136F44BC8D3163D93B97F11F

Malicious FileZilla.exe v3.7.3
SHA256: 2451599C03B136C1848F538184F0F266973B65AFC8DD25F272A7E6B0555B657A
595D954C7CE574337C97A0801E779BC3DCA94FC92AFAE8F483DCDD1A053C5C24 and 525E9ED135C1435772A774D7AD7168CECCD225E354118E621482DB61174F6734 - attached
Attachments
(6.85 MiB) Downloaded 72 times
 #22079  by Win32:Virut
 Wed Jan 29, 2014 12:25 pm
More files mentioned in the article (B9A12F9B6827144D84E65EF2BA454D77CB423C5E136F44BC8D3163D93B97F11F and 2451599C03B136C1848F538184F0F266973B65AFC8DD25F272A7E6B0555B657A).
Attachments
(6.48 MiB) Downloaded 56 times