A forum for reverse engineering, OS internals and malware analysis 

Forum for analysis and discussion about malware.
 #32094  by maddog4012
 Wed Sep 05, 2018 3:45 pm
Malware from newly uncovered group PowerPool exploits zero-day vulnerability in the wild

https://www.welivesecurity.com/2018/09/ ... erability/

SHA-1 hash Component
038f75dcf1e5277565c68d57fa1f4f7b3005f3f3 First stage backdoor
247b542af23ad9c63697428c7b77348681aadc9a First stage backdoor
0423672fe9201c325e33f296595fb70dcd81bcd9 Second stage backdoor
b4ec4837d07ff64e34947296e73732171d1c1586 Second stage backdoor
9dc173d4d4f74765b5fc1e1c9a2d188d5387beea ALPC LPE exploit
Attachments
pw virus
(604.78 KiB) Downloaded 40 times