Malware collection

Forum for analysis and discussion about malware.
ikolor
Posts: 327
Joined: Thu Jun 05, 2014 2:20 pm
Location: Poland

Re: Malware collection

Post by ikolor » Tue Mar 19, 2019 8:25 pm

You do not have the required permissions to view the files attached to this post.

ikolor
Posts: 327
Joined: Thu Jun 05, 2014 2:20 pm
Location: Poland

Re: Malware collection

Post by ikolor » Thu Mar 21, 2019 7:59 pm

You do not have the required permissions to view the files attached to this post.

Fedor22
Posts: 57
Joined: Sun Dec 03, 2017 5:50 pm
Location: Russian Federation

Re: Malware collection

Post by Fedor22 » Fri Mar 22, 2019 4:04 pm

Emotet downloader.
Downloads exe from:

Code: Select all

hxxp://siamnatural.com/tmp/EmC/
Connects to CnC servers:

Code: Select all

hxxp://185.94.252.3:443/bml/tlb/ringin/
hxxp://185.94.252.3:443/ringin/arizona/ringin/merge/
hxxp://5.196.133.206:443/whoami.php

Post Reply