A forum for reverse engineering, OS internals and malware analysis 

Forum for analysis and discussion about malware.
 #30666  by Antelox
 Tue Aug 01, 2017 7:40 am
The sample with SHA256: 6bf1ec3bc2f0a97bdca700f02a99db02543fc00e6e9e88bbc444e56c4f74dfc5 is Geodo/Emotet doc downloader.

BR,

Antelox