MalwareMustDie

#w00t! Trojan Banker Download Implanted in Amazon-AWS

Oct 27th, 2012
1,602
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.19 KB | None | 0 0
  1. ==============================================================
  2. #MalwareMustDie | @unixfreaxjp | Sat Oct 27 14:54:27 JST 2012
  3. TROJAN BANKER WAS INJECTED IN AMAZON CLOUD VIA USER:
  4. junormario, flashssa, twttreng etc...
  5. * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * *
  6. Hi, Amazon, Erase these shits a.s.a.p, is ITW in spams!!!!
  7. * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * *
  8. I am not into the very details of it, see VT result for details,
  9. coz is as per it is.
  10. ==============================================================
  11.  
  12. 1) Trojan Banker sets: (STRAIGHT DOWNLOAD SCHEME URL)
  13. https://s3.amazonaws.com/juniormario/ia2.exe VT(31/43) https://www.virustotal.com/file/453c8a1571ea38560a64c210e8baa3a6d481cdfbe97f9c4d0889bb5408747cd2/analysis/
  14. https://s3.amazonaws.com/juniormario/ma.exe VT(31/44) https://www.virustotal.com/file/c07d0d2e0d4cb4aa59c4980c7953b014e3251e5ecc8d0b9082be2c751794f1f9/analysis/
  15. https://s3.amazonaws.com/juniormario/wmi.dll VT(34/44) https://www.virustotal.com/file/2784e3e11d95f11a61e22de723026002a82fdad49c37644c9598d5fa0f966daa/analysis/
  16. https://s3.amazonaws.com/juniormario/atta.exe VT(28/43) https://www.virustotal.com/file/d49ecdf1bf285acebccb7b800dd20da16a81a46882f1ab7df63e47309e81f054/analysis/
  17. https://s3.amazonaws.com/juniormario/ba.exe VT(31/44) https://www.virustotal.com/file/0ba745172fb51cd2ff19f6664ad9cd5815c547d5efe41d8f318fcf02ade66eea/analysis/
  18.  
  19. 2) Other AMAZON-AWS INFECTOR(IFRAME) AND TROJAN DOWNLOAD SCHEME:
  20. https://s3.amazonaws.com/flashssa/index.html JS/IFRAME INFECTOR TO THE BLOW BANLOAD/TROJ VT (22/42) https://www.virustotal.com/file/0deec9b2fb6213d66ab2c2522e6e9da970a812adead77a892ff36dab31ab70f7/analysis/
  21. https://s3.amazonaws.com/flashssa/Flash_Player.exe Trojan/Downloader/Banload VT(31/44) https://www.virustotal.com/file/70b6e05976a8f62219ccb84f9625027c4d0b73b80449895cb5daadbbfd933167/analysis/
  22.  
  23. 3) AND SOME MORE......(STRAIGHT DOWNLOAD SCHEME URL)
  24. https://s3.amazonaws.com/twttreng/HSS-2.67-install-p94-356-conduit.exe
  25. http://s3.amazonaws.com/futuremark-static/downloads/Futuremark_SystemInfo_v4120_installer.exe
  26. https://s3.amazonaws.com/naturalsoftdownload-voices/software/standardsetup.exe
  27.  
  28. #MalwareMustDIE!!!!!
Add Comment
Please, Sign In to add comment