A forum for reverse engineering, OS internals and malware analysis 

 #12795  by R136a1
 Thu Apr 19, 2012 11:07 am
@Xylitol
Thank you! (nice zip annotation)


Now, I am searching for the following samples:

Probably an ordinary keylogger:
MD5: 7503FC9341B779AFB432313F0AC7F4FB
Report: http://www.threatexpert.com/report.aspx ... 3f0ac7f4fb

Probably BlackEnergy:
MD5: 0B9DC38765D890D4A0BB24180C95C854
Report: http://www.threatexpert.com/report.aspx ... 180c95c854
 #12818  by leeno
 Fri Apr 20, 2012 10:31 am
R136a1 wrote:@Xylitol
Thank you! (nice zip annotation)


Now, I am searching for the following samples:

Probably an ordinary keylogger:
MD5: 7503FC9341B779AFB432313F0AC7F4FB
Report: http://www.threatexpert.com/report.aspx ... 3f0ac7f4fb

Probably BlackEnergy:
MD5: 0B9DC38765D890D4A0BB24180C95C854
Report: http://www.threatexpert.com/report.aspx ... 180c95c854
Attaching MD5 : 0B9DC38765D890D4A0BB24180C95C854
password: infected
Attachments
(36.67 KiB) Downloaded 53 times
 #12844  by Xylitol
 Sat Apr 21, 2012 5:05 pm
R136a1 wrote:@Xylitol
Thank you! (nice zip annotation)


Now, I am searching for the following samples:

Probably an ordinary keylogger:
MD5: 7503FC9341B779AFB432313F0AC7F4FB
Report: http://www.threatexpert.com/report.aspx ... 3f0ac7f4fb

Probably BlackEnergy:
MD5: 0B9DC38765D890D4A0BB24180C95C854
Report: http://www.threatexpert.com/report.aspx ... 180c95c854
and 7503FC9341B779AFB432313F0AC7F4FB in attach.
for zip annotation i've just coded a thing rapidly who generate me a ansi file, not yet the full archive, bored to search how to use zip32.dll (even bored to code i've used my old code of mbrlock serial retriever)

Image
Attachments
(268.43 KiB) Downloaded 80 times
infected
(65.14 KiB) Downloaded 55 times