A forum for reverse engineering, OS internals and malware analysis 

Forum for analysis and discussion about malware.
 #20139  by kekieres
 Wed Jul 17, 2013 7:43 am
Hi guys,

has someone heard or seen o collected a sample of a malware that is using skype communications as mechanism to communicate with a C&C via IM with the bot master that is using a skype user?

The info I have seen is that the malware runs in the infected machine with a process called "skypes.exe".

Thanks.
 #20156  by kareldjag/michk
 Thu Jul 18, 2013 9:40 am
 #20162  by kekieres
 Thu Jul 18, 2013 6:01 pm
kareldjag/michk wrote:hi

Shylock/Backdoor:Win32/Capchaw.N might be interesting to you
https://www.csis.dk/en/csis/blog/3811/
http://blog.trendmicro.com/trendlabs-se ... ing-skype/
http://www.symantec.com/connect/blogs/s ... ortunities
http://contagiodump.blogspot.fr/2013/02 ... ample.html

Rgds
Thnks for the info, but I believe this is not.
What I'm looking for is a malware not distributed thru Skype but that use Skype IM as C&C communications channel.