A forum for reverse engineering, OS internals and malware analysis 

Forum for analysis and discussion about malware.
 #29815  by Antelox
 Fri Dec 30, 2016 7:23 pm
dirasc.exe (7583d544699e65a7d9e0bad0d8c6f401959555997e7251253583979dd1237219)
It's Crimson RAT module downloader.

C2:
93.104.214.103:8414
Please, don't post 2 samples in the same post if they are not related to...

BR,

Antelox