A forum for reverse engineering, OS internals and malware analysis 

Forum for completed malware requests.
 #14202  by rkhunter
 Sat Jun 23, 2012 6:35 pm
Xylitol wrote:
R136a1 wrote:If somebody has the following sample, please upload.

MD5: cf446e1d423afb9933b211d28d3ea33a
Interesting, rootkit. Can anyone attach dropped driver?
 #14205  by R136a1
 Sat Jun 23, 2012 6:59 pm
rkhunter wrote:
Xylitol wrote:
R136a1 wrote:If somebody has the following sample, please upload.

MD5: cf446e1d423afb9933b211d28d3ea33a
Interesting, rootkit. Can anyone attach dropped driver?
Driver attached, please keep me up to date about any discoveries.

At first glance the file is just a dropper/loader for the driver and does nothing else. More to come...
Attachments
PW: infected
(36.14 KiB) Downloaded 60 times