A forum for reverse engineering, OS internals and malware analysis 

Forum for analysis and discussion about malware.
 #32550  by Antelox
 Thu Jan 31, 2019 8:59 am
ikolor wrote: Wed Jan 30, 2019 3:30 pm Thanks buddy .

https://www.virustotal.com/en/file/f0fd ... 548862087/
I have got also Qakbot/QBot from the distribution URLs contacted by the doc:
Code: Select all
hxxp://kadinveyasam.org/wp-content/languages/EZ22B35GBTu9z_N
hxxp://mail.saglikpersoneli.net/sohft/PTYGsf41Witt_k
hxxp://mingroups.vn/NYV82LSYWEs_s1
hxxp://www.ontamada.ru/RDUstD0DxgOP
hxxp://www.vario-reducer.com/wp-content/bGkoUUavZySGn
Binary downloaded: https://www.virustotal.com/en/file/6cf9 ... /analysis/

BR,

Antelox
  • 1
  • 2
  • 3
  • 4
  • 5
  • 8