A forum for reverse engineering, OS internals and malware analysis 

Forum for analysis and discussion about malware.
 #1173  by NOP
 Fri May 28, 2010 11:21 am
Downloaded by Oficla/Sasfis.
Code: Select all
z:\Projects\VS2005\iepv\Release\iepv.pdb
z:\Projects\VS2005\mailpv\Release\mailpv.pdb
Main dropper compiled with Borland/Codegear Delphi. Packed with a custom packer.
The 2 embedded EXE's were compiled with VC++, and packed with UPX,

mailpv seems to have some password stealing capabilities.
Attachments
Password: infected
(1015.24 KiB) Downloaded 67 times