Author Topic: random malware samples  (Read 4151 times)

0 Members and 1 Guest are viewing this topic.

March 10, 2011, 04:17:00 am
Read 4151 times

crunchtime

  • Special Access
  • Full Member

  • Offline
  • *

  • 54
None of these are currently on the mdl:

hxxp://d5a58f556.toysafer5.com/setup.exe (fakeav currently down)

hxxp://bfox.3322.org/qq.exe
hxxp://bfox.3322.org/qq2.exe
hxxp://bfox.3322.org/qq1.exe

hxxp://appleeasy.info/tre/LENA.exe (neosploit)

March 28, 2011, 06:56:21 pm
Reply #1

crunchtime

  • Special Access
  • Full Member

  • Offline
  • *

  • 54
Samples:
hxxp://grore.in/updat70servv.exe
hxxp://sheix.in/updat70servv.exe

Other malware from the same IP:
http://malc0de.com/database/index.php?search=93.186.170.59&IP=on

April 15, 2011, 06:36:15 pm
Reply #2

crunchtime

  • Special Access
  • Full Member

  • Offline
  • *

  • 54
hxxp://sourcer.in/ceptsk700oir.exe - http://www.virustotal.com/file-scan/reanalysis.html?id=0b83981be3aa997b4ed33b0a93961215f9c626f1887f0e9c905899389f8c41fc-1302888510
hxxp://sourcer.in/lib70otrsav.exe
hxxp://dl.antivirus-showdown.cw.cm/BestAntivirus2011.exe
hxxp://dl.antivirus-cloud.cw.cm/BestAntivirus2011.exe
hxxp://jscouch.in/ceptsk700oir.exe
hxxp://ipcount.in/updatemedia/adtver43sece.exe
hxxp://dl.antivirus-antispam.cw.cm/BestAntivirus2011.exe
hxxp://dl.az-antivirus.ce.ms/BestAntivirus2011.exe
hxxp://dl.antivirus-portable.ce.ms/BestAntivirus2011.exe
hxxp://dl.antivirus-gratis.cw.cm/BestAntivirus2011.exe
hxxp://xrqykyh.co.cc/file/bestav1/SecurityScanner.exe
hxxp://startnewmedia.in/file.45145.exe
hxxp://mediasuperbe.in/flashPlugin.45149.exe
hxxp://ittour.in/lib70otrsav.exe
hxxp://46.252.128.15/l.exe
hxxp://hardc0re.co.cc/zer0.exe

Exploits
hxxp://thetalhala.cz.cc/fgfhmdgfdzsasffbg.jar
hxxp://thetalhala.cz.cc/dfgjhshsfgd.jar
hxxp://qkvz.co.cc/games/getJavaInfo.jar
hxxp://myangelinatube.net/dl/google.jar
hxxp://kulamand.cz.cc/fgfhmdgfdzsasffbg.jar
hxxp://kulamand.cz.cc/dfgjhshsfgd.jar
hxxp://hardc0re.co.cc/images//modules/helpers/JavaSignedApplet.jar
hxxp://hardc0re.co.cc/images//modules/helpers/Java-2010-0842.jar