Hi,
Old PE infector drops rootkit...
See attachement:
WinRAR Archives password: malware
---
1- Virus.Win32.Alman.b_Dropper.rar contains :-->> Protected.
- Infected file.
- Original file.
- Disinfected file.
2- linkinfo.dll_Alias_Virus.Win32.Agent.bu.rar -->> Protected.
3- IsDrv122.sys_Alias_Virus.Win32.Alman.b.rar -->> Protected.
--
4- linkinfo.dll_Listing.txt
5- linkinfo.dll_strings.txt
6- Report.txt
---
7- IsDrv122_IDA_Data-base-file.idb -->> Ida database file.
dfs_Infected.exe:
http://www.virustotal.com/fr/analisis/8 ... 1270626442
linkinfo.dll:
http://www.virustotal.com/fr/analisis/d ... 1270626586
IsDrv122.sys:
http://www.virustotal.com/fr/analisis/9 ... 1270626598
Old PE infector drops rootkit...
See attachement:
WinRAR Archives password: malware
---
1- Virus.Win32.Alman.b_Dropper.rar contains :-->> Protected.
- Infected file.
- Original file.
- Disinfected file.
2- linkinfo.dll_Alias_Virus.Win32.Agent.bu.rar -->> Protected.
3- IsDrv122.sys_Alias_Virus.Win32.Alman.b.rar -->> Protected.
--
4- linkinfo.dll_Listing.txt
5- linkinfo.dll_strings.txt
6- Report.txt
---
7- IsDrv122_IDA_Data-base-file.idb -->> Ida database file.
dfs_Infected.exe:
http://www.virustotal.com/fr/analisis/8 ... 1270626442
linkinfo.dll:
http://www.virustotal.com/fr/analisis/d ... 1270626586
IsDrv122.sys:
http://www.virustotal.com/fr/analisis/9 ... 1270626598
Attachments
(192.77 KiB) Downloaded 298 times