2016-08-17 - PCAPS AND MALWARE FOR AN ISC DIARY

ASSOCIATED FILES:

  • 2016-08-17-EITest-Rig-EK-sends-possible-Vawtrak-after-agreen.com.tr.pcap   (1,090,981 bytes)
  • 2016-08-17-pseudoDarkleech-Neutrino-EK-sends-CrypMIC-after-agreen.com.tr.pcap   (454,695 bytes)
  • 2016-08-17-EITest-flash-redirect-from-kydiris.xyz.swf   (4,977 bytes)
  • 2016-08-17-EITest-Rig-EK-flash-exploit.swf   (48,400 bytes)
  • 2016-08-17-EITest-Rig-EK-landing-page.txt   (5,062 bytes)
  • 2016-08-17-EITest-Rig-EK-payload-possible-Vawtrak.exe   (180,224 bytes)
  • 2016-08-17-page-from-agreen.com.tr-with-injected-script-first-run-pseudoDarkleech-and-EITest.txt   (29,894 bytes)
  • 2016-08-17-page-from-agreen.com.tr-with-injected-script-second-run-EITest-only.txt   (29,883 bytes)
  • 2016-08-17-pseudoDarkleech-CrypMIC-decrypt-instructions.HTML   (238,182 bytes)
  • 2016-08-17-pseudoDarkleech-CrypMIC-decrypt-instructions.JPG   (227,805 bytes)
  • 2016-08-17-pseudoDarkleech-CrypMIC-decrypt-instructions.TXT   (1,654 bytes)
  • 2016-08-17-pseudoDarkleech-Neutrino-EK-flash-exploit.swf   (78,071 bytes)
  • 2016-08-17-pseudoDarkleech-Neutrino-EK-landing-page.txt   (2,332 bytes)
  • 2016-08-17-pseudoDarkleech-Neutrino-EK-payload-CrypMIC.dll   (73,728 bytes)

 

NOTES:

 

Click here to return to the main page.