Backdoor:Win32/Poison.E

Forum for completed malware requests.
Post Reply
kalptarunet
Posts: 12
Joined: Sun Feb 27, 2011 2:25 pm

Backdoor:Win32/Poison.E

Post by kalptarunet » Thu Oct 18, 2012 12:12 am

Hi,

Looking below sample, appreciate if some one able to help me.

MD5: d0d335fbc6d9fdbaf8a0af44ae2944c7
SHA1: 5c8ff79400f965e269c6a213e640e2d15dbebb52

C2 callback:
http://antivirus.9899.com.ar/meeting/upgrade.exe /meeting/upgrade.exe

Sandbox Analaysis:

http://malwr.com/analysis/d0d335fbc6d9f ... 4ae2944c7/
http://jsunpack.jeek.org/dec/go?report= ... 9f49d5ae31

Thanks,

-KTX

User avatar
Xylitol
Global Moderator
Posts: 1681
Joined: Sat Apr 10, 2010 5:54 pm
Location: Seireitei, Soul Society
Contact:

Re: Malware Requests, part 2

Post by Xylitol » Thu Oct 18, 2012 4:24 pm

kalptarunet wrote:Hi,

Looking below sample, appreciate if some one able to help me.

MD5: d0d335fbc6d9fdbaf8a0af44ae2944c7
SHA1: 5c8ff79400f965e269c6a213e640e2d15dbebb52

C2 callback:
http://antivirus.9899.com.ar/meeting/upgrade.exe /meeting/upgrade.exe

Sandbox Analaysis:

http://malwr.com/analysis/d0d335fbc6d9f ... 4ae2944c7/
http://jsunpack.jeek.org/dec/go?report= ... 9f49d5ae31

Thanks,

-KTX
You do not have the required permissions to view the files attached to this post.

Post Reply