Downloaded by Oficla/Sasfis.
The 2 embedded EXE's were compiled with VC++, and packed with UPX,
mailpv seems to have some password stealing capabilities.
Code: Select all
Main dropper compiled with Borland/Codegear Delphi. Packed with a custom packer.z:\Projects\VS2005\iepv\Release\iepv.pdb
z:\Projects\VS2005\mailpv\Release\mailpv.pdb
The 2 embedded EXE's were compiled with VC++, and packed with UPX,
mailpv seems to have some password stealing capabilities.
Attachments
Password: infected
(1015.24 KiB) Downloaded 67 times
(1015.24 KiB) Downloaded 67 times