-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Here you go; I got this malware from a friends machine that had been infected. This was about 2 months ago so there about. Use a hex editer to give you what it was packed with and then just go from there. Good luck and have fun.
download it from here http://209.200.126.28/sample.zip "unzip" "rename the rar_ to .rar" "unrar". If anyone is wondering yes antivirus picks it up so dont worry. On Thu, 04 Aug 2005 15:19:14 -0700 M4ch3T3 Hax <[EMAIL PROTECTED]> wrote: >Hello all, > >I have recently graduated from a computers & networking course at >university and have spent alot of my time analysing network >security >from a scanning/sniffing/hardening point of view. > >I'm now becoming very interested in learning more about malicious >code >analysis in a virtual machine environment. I have read >documentation >and set up the environment and tools etc.. However I have no >malicious >code to look at! does anyone know of a way to get hold of some? > >Also, if anyone can recommend any further reading or sites etc. It >would be very much appreciated! > >Cheers! >_______________________________________________ >Full-Disclosure - We believe in it. >Charter: http://lists.grok.org.uk/full-disclosure-charter.html >Hosted and sponsored by Secunia - http://secunia.com/ -----BEGIN PGP SIGNATURE----- Note: This signature can be verified at https://www.hushtools.com/verify Version: Hush 2.4 wkYEARECAAYFAkLyst0ACgkQUjm7xSZSd8Ec9wCfVCyeftO+crjrndW0QTWi/7TcH70A oJIlHd0nyKHnYsEGCiFUAiR1W6Iw =IGME -----END PGP SIGNATURE----- _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
