A forum for reverse engineering, OS internals and malware analysis 

Forum for analysis and discussion about malware.
 #23973  by EP_X0FF
 Tue Sep 23, 2014 3:51 am
Huhk is a cavity virus that infects a host by placing parts of itself in blocks of zeros found within the host.

MS Description

MD5 0b8a14059fe05d52badccf2d65b51046
SHA1 cd88a652093d8467c70ae0adbd55fea6224f3f5f
SHA256 f876318bd1e169adc1016b35c06e86e1cb134a7d105e3f5b3e6e1858deb67301
https://www.virustotal.com/en/file/f876 ... /analysis/
Attachments
pass: infected
(12.51 KiB) Downloaded 148 times
 #24031  by EP_X0FF
 Thu Oct 02, 2014 5:14 am
tr0jan wrote:is it infecting widely now?
I had reversed it two years back... :ugeek:
Not that widely like Sality. Mostly posted for historical purposes. Also maybe you are willing to share your research, we will be glad to read it.