A forum for reverse engineering, OS internals and malware analysis 

Forum for completed malware requests.
 #10991  by Muteb
 Fri Jan 13, 2012 3:03 am
Could you Guys help to find this malware
File MD5: 0xE276F2C49D194DEF764A383482ECBD03
File SHA-1: 0xE6809CD336E4065BF1DB62C6EA24FA064EF9AC84
Filesize: 7,680 bytes
Alias: Trojan.Win32.Agent.tpq [Kaspersky Lab]

thanks
 #10992  by dcmorton
 Fri Jan 13, 2012 4:34 am
Muteb wrote:Could you Guys help to find this malware
File MD5: 0xE276F2C49D194DEF764A383482ECBD03
File SHA-1: 0xE6809CD336E4065BF1DB62C6EA24FA064EF9AC84
Filesize: 7,680 bytes
Alias: Trojan.Win32.Agent.tpq [Kaspersky Lab]

thanks
See here: http://vxheavens.com/vl.php?dir=Trojan.Win32.Agent

The MD5 you request is available here.
 #11044  by Xylitol
 Sun Jan 15, 2012 4:24 pm
Solving old requests, here you go guys
sugar wrote:hello all,
i'm looking for
24bbf7bb83b839de0668de6f6398b06f
c60dcdf8802e437aa0cc83de2a01328e
hnpl2011 wrote:i'm looking for samples, anyone can help:
803fbc9388203458060f354b0fd3ffe68c506275 – Backdoor:MSIL/Pontoeb.J
http://www.virustotal.com/file-scan/rep ... 1324204584
a3ca4151c31181a3b948b7cd6a1ef97754fcce22 – Backdoor:Win32/Fynloski.A
http://www.virustotal.com/file-scan/rep ... 1316878088
anyone can help me?, thank alot
Striker wrote:
p4r4n0id wrote:MD5?
unfortunately i cannot edit my post. here are the MD5.

Installer: winhoundinstaller.exe (2559 KB)
MD5: 49693FA15155B8B0B4EE5BB8135FD0B9
Gunnerofarsenal wrote:Flashback Mac OS X, very appreciated

MD5 hash of Flashback.C sample (actual .pkg): 041ec03a36598a9823fb342cd9840acc
MD5 hash of Flashback.C sample (postinstall): e24979f7bd55a458a33247c5201a6a7d
Gunnerofarsenal wrote:Requesting recent mac malware for a paper I'm working on, I found the mac defender available on this forum. If anyone can provide me with samples, or pointers to right direction for links below. It would be much appreciated :)

http://www.macworld.com/article/162496/ ... aller.html

http://www.f-secure.com/weblog/archives/00002241.html
p4r4n0id wrote:Hi,
I am looking for the Mac Flashback Sample. MD5 is 893173D0B12A6C6912FB6134DFECAA5B.

Thx,
p4r4n0id
tomatto007 wrote:I'm looking for other samples of Morto than:
md5 2EEF4D8B88161BAF2525ABFB6C1BAC2B

Required samples:
md5 349ECDC9DC4BB45F46157864678B17E4
md5 48EEE79A9477540A5621A195620B8FC7
liangtong wrote:Hello,I'm looking for Trojan:WinNT/Derusbi.A.
More details:
http://www.weskysoft.com/MPC/Trojan=/Tr ... sbi.A.html
http://www.threatexpert.com/report.aspx ... 5a9bfdce8f

Thank you. :)
Sotherbee wrote:Finding some adware:

Trojan.AdSubscribe.1
Win-Trojan/Adload.681984
Trojan-Downloader.Win32.Adload.fib

MD5 : 98c7d86ae9ad8a15a4e50a089e9a950c

Thanks!
Attachments
pw: infected
(4.52 MiB) Downloaded 68 times
 #11062  by p4r4n0id
 Mon Jan 16, 2012 3:41 pm
Hi Guys,

Does anyone got Sykipot sample?

Thx,

p4r4n0id
 #11145  by severu5
 Fri Jan 20, 2012 1:27 am
Hello,

Sorry to make a request as my first post.
Just doing some research at University and was wondering if anyone had any samples of
Net-Worm.Win32.Kido.ih

# File MD5: 0x78C9042BBCEFD65BEAA0D40386DA9F89
# File SHA-1: 0x197E347479B9B6B7CDE6C46C5DBBF2487247175E

I am particularly interested in this as it has some network exploits I am looking at.

Thanks.

http://www.threatexpert.com/report.aspx ... 0386da9f89
 #11146  by severu5
 Fri Jan 20, 2012 1:41 am
Sorry, just found this.
For anyone else that wants it, search for conficker on the forum, and it shows up as a variant within a downloadable pack.

Thanks.
 #11200  by tomatto007
 Sun Jan 22, 2012 7:08 am
Wanted a sample:
http://www.threatexpert.com/reports.asp ... xe&x=0&y=0
List of known MD5:
2E67ED70193AD41A456AAFE93F149318
68B69E6E541DF9E50910B4FBCB5DEE95
39701F5C18D18CD690F7DED4F1EA958E
E157D4A721C0AAE4EE4AF81CC3F9E48E
F42B7BD992B20528E15304E2339DBBE0
86374D29071171DF2E9BE70AEF2A7501
C33356E656362648F308B62446E1F1B1
6ED7AF7435B1E2263B2B75926199B979
10CAAB45E9FA860B111FBF75AF8A8A17
2D892FBCC3A784C350D35F51132BAD8C
CB7C7AACFE876ED7F843BDDC14A4ABC4
C8065451B6EB14CA9F28A8553E80AE7F
B786C06E05473CDA2E2046625AE27146
6DB6AE2935BEFA7C4452D73DE7FB6EA8
D1C334FCE676A8EB87225F8344190C58
2E67ED70193AD41A456AAFE93F149318
 #11202  by Xylitol
 Sun Jan 22, 2012 8:28 am
in attach
2E67ED70193AD41A456AAFE93F149318
68B69E6E541DF9E50910B4FBCB5DEE95
39701F5C18D18CD690F7DED4F1EA958E
E157D4A721C0AAE4EE4AF81CC3F9E48E
F42B7BD992B20528E15304E2339DBBE0
86374D29071171DF2E9BE70AEF2A7501
C33356E656362648F308B62446E1F1B1
CB7C7AACFE876ED7F843BDDC14A4ABC4
C8065451B6EB14CA9F28A8553E80AE7F
6DB6AE2935BEFA7C4452D73DE7FB6EA8
D1C334FCE676A8EB87225F8344190C58
2E67ED70193AD41A456AAFE93F149318
Attachments
pw: infected
(3.14 MiB) Downloaded 60 times
 #11711  by hnpl2011
 Tue Feb 21, 2012 5:00 am
looking for:
- SHA256: 14f6529d89ac6766939673e1fadc5e308a31fdad4e3b06ffdbd694557739aa25
Md5: 884dc7e8b3ee692664fe3e56be7dd705
https://www.virustotal.com/file/14f6529 ... /analysis/

-SHA256: 27f2189eaf65f0609554cc8dcee68cdf0c8e7e86a8a8bf8f2e828e2af11d6b8a
Md5: 0d6ad94d1d928d1142c34b0cded31e7c
https://www.virustotal.com/file/27f2189 ... /analysis/

-SHA256: 1af07f501c69c05e6dbb0fd427ea5a87cb6578e89fbb05d4feceb0980852bf09
https://www.virustotal.com/file/1af07f5 ... 303756000/

Thank so much!
  • 1
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10