http://www.prodefence.org/11-infected-files-binded-in-one-malware-research/
“I do not think the file is infected …”
All of these are a part of the extracted files from a downloaded file.
All
.exe files are VT detected … GET from url functions … POST on url
functions … silent uploads / downloads … silent installs … and more …
There was so much activity that the CPU hit 100%.
I do not think it makes sense to analyze anything else here… it takes to long!
Have fun & Stay safe!
Prodefence.org
Niciun comentariu:
Trimiteți un comentariu