A forum for reverse engineering, OS internals and malware analysis 

Forum for analysis and discussion about malware.
 #14166  by Xylitol
 Fri Jun 22, 2012 9:54 am
dumb110 wrote:
gied wrote:http://www.kernelmode.info/forum/viewto ... rus#p10875 Should be Win 7 Antivirus 2012 on Windows 7 machine.
i dont think so..anybody else has a sample??
like he says it should be Win 7 antivirus on W7, this malware is looking for the OS version (XP, Vista, Seven) and changes its name and skin.
 #14200  by Win32:Virut
 Sat Jun 23, 2012 5:19 pm
Live Security Platinum (Winwebsec)

MD5: 4c11d56f3b792fdff90322aa3e9ef528

https://www.virustotal.com/file/4c11d56 ... /analysis/
(335.98 KiB) Downloaded 46 times

MD5: 694365dfdbc7cff4f5632df480f2de87

https://www.virustotal.com/file/694365d ... /analysis/
(332.37 KiB) Downloaded 44 times
  • 1
  • 23
  • 24
  • 25
  • 26
  • 27
  • 46