検索:
ホーム   »     »   Another malware – BKDR_BREPBOT.A

Another malware – BKDR_BREPBOT.A

  • 投稿日:2006年6月16日
  • 脅威カテゴリ:未分類
  • 執筆:ウイルス解析担当者
0

Just a few hours ago after the first incident of TROJ_BAGLE.EY
in the Email Honeypot, I have noticed another sample in MailTrap
that is taking the rounds. So, I quickly checked the sample, which is detected as
PAK_GENERIC.001.

Though, there’s nothing new or special with this backdoor it
reaches a total count of 280 samples in less than 3 hours. This
must have been the result of massive spamming that we are facing
today. Just like what I have noticed in the sample count of the
recent TROJ_BAGLE.EY; it is packed with UPolyX but we have
intercepted 870 samples (at the time of writing) all with the same
MD5 hash. The point is, it is packed with a polymorphic packer but
we are getting numerous copy of only one generation of the sample!
Why? It is all because of what I’ve just mentioned, massive
spamming. Oh well.. :(

The sample which arrived as a zip file has a file size of 10,090
bytes and an MD5 hash of 87B40A62BD5D8FD2A5ED24C16B92B5D1. The
filenames might be one of the following.

  • Article+Photos.zip
  • Article.zip
  • article_July_0077.zip
  • article_July_1726.zip
  • article_July_1734.zip
  • article_July_1823.zip
  • article_July_2417.zip
  • article_July_2614.zip
  • article_July_2865.zip
  • article_July_4409.zip
  • article_July_4988.zip
  • article_July_5503.zip
  • article_July_6301.zip
  • article_July_7817.zip
  • article_July_8048.zip
  • article_July_8092.zip
  • article_July_8477.zip
  • article_July_8491.zip
  • article_July_9935.zip
  • ArticlePhotos.zip
  • CCTV-footage.zip
  • CCTVstill.zip
  • Photo+Article.zip
  • PhotoandArticle.zip
  • Photos.zip
  • suspectimage.zip
  • Suspectphoto.zip
  • suspiciousphoto.zip

Here is the sample email.


No related posts.



  • 個人のお客さま向けオンラインショップ
  • |
  • 法人のお客さま向け直営ストア
  • |
  • 販売パートナー検索
  • Asia Pacific Region (APAC): Australia / New Zealand, 中国, 日本, 대한민국, 台灣
  • Latin America Region (LAR): Brasil, México
  • North America Region (NABU): United States, Canada
  • Europe, Middle East, & Africa Region (EMEA): France, Deutschland / Österreich / Schweiz, Italia, Россия, España, United Kingdom / Ireland
  • 電子公告
  • ご利用条件
  • プライバシーポリシー
  • Copyright © 2021 Trend Micro Incorporated. All rights reserved.