Friday, 13 February 2015

Hola my photo my_photo_sexy.zip malware

Hola my photo my_photo_sexy.zip malware....


Headers: (example)
From:     "Jessica" {agnosticsg9951@marketmindful2.com}
Subject: Hola my photo
Message body (example)
hola my new photo , send u photo
Attached to the email is a Zip file:
my_photo_sexy.zip

Inside the zip, is Windows executable:
my_photo_sexy_438543758943758943758934.exe

Md5 Hashes:
8b254ae8bb33b4f972113108517c6f95  [1]
Malware Information:

VirusTotal Report [1] (hits 15/57 Virus Scanners)

Malwr Report [1]


Summary:
  • Executed a process and injected code into it, probably while unpacking
  • Installs itself for autorun at Windows startup

      Hybrid Analysis Report [1]

      Cheers,

      Steve
      Sanesecurity.com

      No comments: