Jump to content


Photo

5d85b98d34e12e4d34ea4f3771bd7e14.exe


  • This topic is locked This topic is locked
1 reply to this topic

#1 ZeroSecurity

ZeroSecurity

    New Member

  • Members
  • Pip
  • 26 posts
  • Gender:Male

Posted 09 May 2012 - 03:09 PM

Found this on a youtube video saying it can 'hack' game accounts. I believe it's a strain of Darkcomet RAT encrypted. 26/42 on VT

Drops file in appdata named java.exe and adds it to startup.

https://www.virustot...sis/1336594041/

and currently undetected by malwarebytes.

#2 Fatdcuk

Fatdcuk

    Malware BBQ'er

  • Moderators
  • PipPipPipPipPipPip
  • 20,550 posts
  • Gender:Male
  • Location:127.0.0.1

Posted 09 May 2012 - 03:13 PM

Many thanks ZeroSecurity,

I will take a look at the file shortly :)
Ade Gill
Research Engineer

Posted Image

Follow us: Twitter, Become a fan: Facebook




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users