Malware
SecureMail?
Submitted by oesch on Wed, 2013-04-24 10:49. MalwareFinally back at this blog...
Today my spamfilter catched another nice executable!
I got SecureMail ;-)
Ready for some python-based reversing:
phil@vr:~$ python /opt/projects/rem/peframe/peframe.py --auto SecureMail.exe
File Name: SecureMail.exe
File Size: 137728 byte
Compile Time: 2013-01-23 19:05:56
DLL: False
Sections: 5
MD5 hash: 6870fd8fd2b2bedd83e218d9e7e4de8b
SHA-1 hash: 4b7a2c0cee63634907c5ccc249c8cd4c0231f03a
Packer: None
Anti Debug: None
Anti VM: None
File and URL:
FILE: KERNEL32.dll
FILE: USER32.dll
FILE: MSAATEXT.dll
FILE: RASAPI32.dll
URL: None
How to submit a sample?
Submitted by Aitrusskyy on Thu, 2013-04-18 04:49. Analysis and Samples | MalwareI have a sample and don't know how to submit it. I see many links for downloading of other samples that appear to suggest the files are hosted via offensive computing. I have read there is an "upload" button on the main page but I see no such button. Can anyone explain to me how to submit a sample properly so that I do not break any rules?
I have a sample of fbi moneypak
https://www.virustotal.com/en/file/ebfe736ae6edcf6c73e3eb6ff3974aa5d42ff7c46eec36fcb0bfe435a0136648/analysis/1366288253/
hi im looking for Sality.AT sample
Submitted by MalwareLover123 on Tue, 2013-03-05 13:30. Malware | Sample RequestsSality.AT sample only please, original or infected file.
thanks
hi im looking for Sality.AT sample
Submitted by MalwareLover123 on Tue, 2013-03-05 13:29. MalwareSality.AT sample only please, original or infected file.
thanks
Backdoor.Makadocs
Submitted by skeptre on Mon, 2012-11-19 10:41. Malware | Sample RequestsHi
I read a few reports a new malware using Google docs to communicate with C&C. Anyone managed to get a sample or other details about it ?
http://www.symantec.com/security_response/writeup.jsp?docid=2012-111609-4148-99
Ubuntu malware
Submitted by ossectest on Wed, 2012-08-29 04:03. Malware | Sample RequestsHi,
Is there a way to search for ubuntu malware? Even if i search for a known unix malware sample, it gives me a zipped exe file :s
thank you in advance,
ossec
Windows 7 malware
Submitted by ossectest on Tue, 2012-08-14 11:58. Malware | Sample RequestsI'm a student at the VUB in Brussels - Belgium and I'm specifically looking for windows 7 malware. A big part of the windows malware I found would not run properly on windows 7. Search specifically for windows 7 did not succeed.
Help is much appreciated.
How can I download malware samples from this site automatically?
Submitted by sherwood on Tue, 2012-08-07 06:52. Malware | Sample RequestsHello everyone,
I am a computer science Ph.D. student from FIU in U.S. and my research area is system security. I need a large number of malware samples(about 3000) for Windows. I want to know is it posible for me to download malware samples from this site automatically(e.g., using a batch script)?
Thanks,
Feng
FBI MoneyPak Sample
Submitted by rsalinger on Thu, 2012-08-02 04:34. Analysis and Samples | MalwareI was wondering if anyone had a sample of the FBI MonkeyPak malware that seems to be going around. I need to see if the tools we have for our company will be adequate to remove it from our customer's machines when they come in. I just seem seem to infect my test machine with this one.
Request for dutch banking trojans
Submitted by KnickLighter on Thu, 2012-04-05 01:58. Malware | Sample RequestsHi guys,
I'm currently doing some work for a bank in The Netherlands, for which we want to do some investigation concerning trojans that influence financial traffic over the internet or steal money or data or such.
We're currently setting up some virtual machines and creating a seperate internet line for these things, but in order to set everything up right I need some trojans that are actively retreiving user information, such as usernames, passwords, accounts and other personal or financial information.
