New variant adds the extension .bed5!
GrujaRS Level 5 Thread author Verified Well-known Aug 7, 2016 228 Oct 3, 2016 #1 New variant adds the extension .bed5! Reactions: ZeroDay, Solarquest, Neno and 9 others
DardiM Level 26 Verified Honorary Member Top Poster Malware Hunter Well-known May 14, 2016 1,597 Oct 12, 2016 #2 Thanks for your review https://www.virustotal.com/fr/file/...308f706c01d211703b20269bdf81e16dc98/analysis/ https://www.hybrid-analysis.com/sam...01d211703b20269bdf81e16dc98?environmentId=100 Interesting to note the name of the exe : "sorry.exe" Last edited: Oct 12, 2016 Reactions: ZeroDay, Solarquest, Der.Reisende and 4 others
Thanks for your review https://www.virustotal.com/fr/file/...308f706c01d211703b20269bdf81e16dc98/analysis/ https://www.hybrid-analysis.com/sam...01d211703b20269bdf81e16dc98?environmentId=100 Interesting to note the name of the exe : "sorry.exe"
L LabZero Oct 12, 2016 #3 DardiM said: Thanks for your review https://www.virustotal.com/fr/file/...308f706c01d211703b20269bdf81e16dc98/analysis/ https://www.hybrid-analysis.com/sam...01d211703b20269bdf81e16dc98?environmentId=100 Intersting to note the name of the exe : "sorry.exe" Click to expand... Lol 'sorry' for what I am doing, but... More seriously, thanks for the malware details! Reactions: ZeroDay, Der.Reisende, harlan4096 and 2 others
DardiM said: Thanks for your review https://www.virustotal.com/fr/file/...308f706c01d211703b20269bdf81e16dc98/analysis/ https://www.hybrid-analysis.com/sam...01d211703b20269bdf81e16dc98?environmentId=100 Intersting to note the name of the exe : "sorry.exe" Click to expand... Lol 'sorry' for what I am doing, but... More seriously, thanks for the malware details!