A forum for reverse engineering, OS internals and malware analysis 

Forum for completed malware requests.
 #29209  by patriq
 Fri Sep 09, 2016 4:49 pm
from your link "Scylex hasn’t been spotted in the wild"

I also checked out Lampeduza and couldn't find that advertisement or user account 'Others'

The video htxps://a.cocaine.ninja/vkkpew.mp4 shows a hidden vnc backconnect, features listed include form grabbing and webinjects, download and execute in memory... yawn.

Also you have zero posts = no requests
http://www.kernelmode.info/forum/viewto ... =20&t=1950
 #29210  by EP_X0FF
 Sat Sep 10, 2016 4:43 am
"heimdalsecurity" is known for mislabeling malware, creating hype and promoting hoaxes. I suggest you ignore these clowns.