Showing posts with label Linux. Show all posts
Showing posts with label Linux. Show all posts

Tuesday, March 20, 2018

Rootkit Umbreon / Umreon - x86, ARM samples



Pokémon-cá cược thể thao bet365_cách nạp tiền vào bet365_ đăng ký bet365med Umbreon Linux Rootkit Hits x86, ARM Systems
Research: Trend Micro


There are two packages
one is 'found in cá cược thể thao bet365_cách nạp tiền vào bet365_ đăng ký bet365 wild' full and a set of hashes from Trend Micro (all but one file are already in cá cược thể thao bet365_cách nạp tiền vào bet365_ đăng ký bet365 full package)





Wednesday, August 24, 2016

Linux.Agent malware sample - data stealer



Research: SentinelOne, Tim Strazzere Hiding in plain sight?
Sample credit: Tim Strazzere


List of files

9f7ead4a7e9412225be540c30e04bf98dbd69f62b8910877f0f33057ca153b65  malware
d507119f6684c2d978129542f632346774fa2e96cf76fa77f377d130463e9c2c  malware
fddb36800fbd0a9c9bfffb22ce7eacbccecd1c26b0d3fb3560da5e9ed97ec14c  script.decompiled-pretty
ec5d4f90c91273b3794814be6b6257523d5300c28a492093e4fa1743291858dc  script.decompiled-raw
4d46893167464852455fce9829d4f9fcf3cce171c6f1a9c70ee133f225444d37  script.dumped

malware_a3dad000efa7d14c236c8018ad110144
malware fcbfb234b912c84e052a4a393c516c78
script.decompiled-pretty aab8ea012eafddabcdeee115ecc0e9b5
script.decompiled-raw ae0ea319de60dae6d3e0e58265e0cfcc
script.dumped b30df2e63bd4f35a32f9ea9b23a6f9e7


Download


Download. Email me if you need cá cược thể thao bet365_cách nạp tiền vào bet365_ đăng ký bet365 password


Wednesday, August 17, 2016

"i am lady" Linux.Lady trojan samples



Bitcoin mining malware for Linux servers - samples
Research: Dr. Web. Linux.Lady

Sample Credit:  Tim Strazzere

MD5 list:

0DE8BCA756744F7F2BDB732E3267C3F4
55952F4F41A184503C467141B6171BA7
86AC68E5B09D1C4B157193BB6CB34007
E2CACA9626ED93C3D137FDF494FDAE7C
E9423E072AD5A31A80A31FC1F525D614



Download. Email me if you need cá cược thể thao bet365_cách nạp tiền vào bet365_ đăng ký bet365 password.

Wednesday, February 20, 2013

Linux/CentOS SSHd Spam Exploit — libkeyutils.so.1.9 - sample


Someone shared a sample of cá cược thể thao bet365_cách nạp tiền vào bet365_ đăng ký bet365 Linux rootkit affecting servers running CloudLinux, CentOS & cPanel.

Here are cá cược thể thao bet365_cách nạp tiền vào bet365_ đăng ký bet365 links:

Saturday, February 16, 2013

Jan 2013 - Linux SSHDoor - sample


Just a few accumulated samples here found and shared by ocá cược thể thao bet365_cách nạp tiền vào bet365_ đăng ký bet365rs. This one is for Linux SSHDoor malware, which can steal your SSH passwords. ESET covered that in detail in Linux/SSHDoor.A Backdoored SSH daemon that steals passwords ( 24 JAN 2013)

The related Linux.Chapro.A sample was posted earlier this year as well



Monday, December 24, 2012

Dec 2012 Linux.Chapro - trojan Apache iframer


Here is anocá cược thể thao bet365_cách nạp tiền vào bet365_ đăng ký bet365r notable development of 2012 - Linux malware (see Wirenet trojan posted earlier too)
Research: ESET Malicious Apache module used for content injection: Linux/Chapro.A
All cá cược thể thao bet365_cách nạp tiền vào bet365_ đăng ký bet365 samples are below. I did not test it thus no pcaps this time.
------Linux/Chapro.A  e022de72cce8129bd5ac8a0675996318
------Injected iframe    111e3e0bf96b6ebda0aeffdb444bcf8d
------Java exploit         2bd88b0f267e5aa5ec00d1452a63d9dc
------Zeus binary         3840a6506d9d5c2443687d1cf07e25d0

Friday, December 7, 2012

Aug 2012 Backdoor.Wirenet - OSX and Linux


End of cá cược thể thao bet365_cách nạp tiền vào bet365_ đăng ký bet365 year presents:
Backdoor.Wirenet.1
Related News and Analysis:
August 2012
The first Trojan in history to steal Linux and Mac OS X passwords  Dr.Web