A forum for reverse engineering, OS internals and malware analysis 

Forum for analysis and discussion about malware.
 #25005  by Pr0xymu5
 Mon Jan 19, 2015 9:44 pm
Dendroid BotNet
You do not have the required permissions to view the files attached to this post.
 #25141  by EP_X0FF
 Wed Feb 04, 2015 3:41 am
pws wrote:Hey there,

Wondering if someone is familiar with this "PornDroid" malware:
http://malware.dontneedcoffee.com/2015/ ... m-aka.html

Nothing fancy, just a Koler variant it seems but I am interested in the panel source code if anyone got his hands on it.

Not sure this is the right section though to ask for that. If not, sorry.
Here, in #10 http://www.kernelmode.info/forum/viewto ... =20&t=1950
 #27043  by Mosh
 Thu Oct 22, 2015 5:31 pm
XXX_Porno_Video.apk (851 KB)
MD5: 65770c670bdf1e6f433c6d0314ac8071
SHA1: 870ffacbfc4138a6adfad559c17ec97e855713d0
SHA256: 83c2fecf4d3a7e6a00c03bcaac0bedeba597e1c1d0d98215d81de455a02dd9fa

With images for Russian and Ukraine goverments

Image
You do not have the required permissions to view the files attached to this post.
 #27114  by Mosh
 Fri Oct 30, 2015 4:04 pm
Police Locker/Ransomware

teen18tubePlayer-49.2.apk (65,5 KB)
MD5: 3f7b5912c4db84feb783ca6ca3bae339
SHA1: 051d2564bd986ce0c8c248f67f2fbfdf87b33cb5
SHA256: 53336abac276ae519004d62d3f6949584cf3535a00264b66803d4a05364aa176

Image
You do not have the required permissions to view the files attached to this post.
 #27203  by Mosh
 Tue Nov 10, 2015 4:35 pm
RootChecker.apk (169 KB)
MD5: 3d2f666cb5fbcdf92c457d5dcabdc47d
SHA1: 71a99e3c5ef52041d1fdcfc11af6c942ccd22abc
SHA256: d86a9e62928d3c9f45f79eb7ab5eff2bfe94753190b46cda707b4bf0a9247a7f
VirusTotal: 9/54

Image
You do not have the required permissions to view the files attached to this post.
  • 1
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11