A forum for reverse engineering, OS internals and malware analysis 

Forum for completed malware requests.
 #15516  by Xylitol
 Wed Sep 05, 2012 1:56 am
_69 wrote:I need following samples (md5):

99AAAC76ADF86FFEAFA76AEC02CEA878
D9CD220F7DDB42CF5F85FB5B9BA8778C
05564DEE2909983D610DFB732B133A5D
99AAAC76ADF86FFEAFA76AEC02CEA878 not found
Attachments
infected
(262.15 KiB) Downloaded 54 times
 #15541  by Xylitol
 Thu Sep 06, 2012 1:09 pm
Attachments
infected
(38.71 KiB) Downloaded 47 times
 #15695  by Brookit
 Fri Sep 21, 2012 3:15 pm
Looking for the following samples (MD5):

3be6fea2bf35c3c3be860622c68ff369
1e8c67d20a63b73bcc9dc6975130b88c
11efb65c20c9c0a37be44e58890ebe42
b334452b05731b38b3f79703bc1a4fc5
d8059598190ae81e7c0ca263627b1787
492753685bd13ad3a85231cd4021be6a
b56cc11aac64aed918e8ba25b5e896fd
53ab4ea7ad3125003dc7d8817267433e
 #15724  by tomatto007
 Mon Sep 24, 2012 4:38 am
Brookit wrote:Looking for the following samples (MD5):

3be6fea2bf35c3c3be860622c68ff369
1e8c67d20a63b73bcc9dc6975130b88c
11efb65c20c9c0a37be44e58890ebe42
b334452b05731b38b3f79703bc1a4fc5
d8059598190ae81e7c0ca263627b1787
492753685bd13ad3a85231cd4021be6a
b56cc11aac64aed918e8ba25b5e896fd
53ab4ea7ad3125003dc7d8817267433e
Attachments
pw: infected
(29.52 KiB) Downloaded 56 times
 #15744  by Xylitol
 Tue Sep 25, 2012 7:09 am
dumb110 wrote:somebody has actual exe:
https://www.virustotal.com/file/a5a04f6 ... 348115952/
Thanat0S wrote:hi guys, I'm looking for:

https://www.virustotal.com/file/8db0a8b ... /analysis/

https://www.virustotal.com/file/1b3c311 ... /analysis/

thanks! :)
Brookit wrote:Looking for the following samples (MD5):

3be6fea2bf35c3c3be860622c68ff369
1e8c67d20a63b73bcc9dc6975130b88c
11efb65c20c9c0a37be44e58890ebe42
b334452b05731b38b3f79703bc1a4fc5
d8059598190ae81e7c0ca263627b1787
492753685bd13ad3a85231cd4021be6a
b56cc11aac64aed918e8ba25b5e896fd
53ab4ea7ad3125003dc7d8817267433e
 #15745  by Xylitol
 Tue Sep 25, 2012 7:16 am
hx1997 wrote:Hi,

anyone has the sample mentioned in this article?
http://www.symantec.com/connect/blogs/m ... o-language

Trojan.Encriyoko, it's malware written in Google Go Language.
No hashes, sorry.

Thx in advance.
infected
(222.23 KiB) Downloaded 68 times
gritland wrote:looking sample of Smoke Loader (need formgrabber plugin for reverse)
>> http://www.kernelmode.info/forum/viewto ... 40&p=13403
  • 1
  • 8
  • 9
  • 10
  • 11
  • 12
  • 15