A forum for reverse engineering, OS internals and malware analysis 

Forum for analysis and discussion about malware.
 #32377  by Julio Frausto
 Sun Jan 06, 2019 7:31 pm
My first contribution:

New variant of: http://www.kernelmode.info/forum/viewto ... kit#p31223

Fake Microsoft products activator.

Fake active "official" web site (clean): http://www.microsofttoolkitofficial.info/

Fake web site VT analysis: https://www.virustotal.com/en/url/95fe7 ... 546801776/

New variant VT analysis: https://www.virustotal.com/en/file/026e ... /analysis/

Warning sample download: [url]hxxp://www.microsofttoolkitofficial.info/Files ... 123456.rar[/url] Comes as .rar, just extract to get .exe

Have fun.