13.05.2016 Views

THE HISTORY OF THE DARKSEOUL GROUP AND THE SONY INTRUSION MALWARE DESTOVER

001398694

001398694

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

2f8c448bb05ed1218e638c61bb56ebb953b962ed5e065b08fa03cfcf6f6a1c68<br />

Downloader and backdoor<br />

Group: e4046a19ef86378a43907279d072e5fb<br />

f98c67c4cf9b02acaabb555664a0d9d648a1e43f681f9bf234af066d5451be8d<br />

KorDllbot 1.05.2 downloader and backdoor<br />

Group: 33f8c3f1b7df61b949ed876422818bb1<br />

1226d3635c1a216be9316c9dfa97f103c79ed4c44397e5e675d3b1e37786bf31<br />

KorDllbot backdoor<br />

Group: de85322cb067a1aa41af54c2de87fb03<br />

c5baece9978649659220af2681a3a43b83f8ae47afdd3862185d1fec7735a7d2<br />

Dropped KorDllbot component<br />

a4b982d4e7137d7d3687f3127e6d5c2a8b2be1f53daeebce9175461c7e6a53cd<br />

KorDllbot backdoor dropper<br />

9bcecd6afa54eb4f343b7eb82a86ceee189cc10bc91fa83f8cdc98cc5aaef117<br />

KorDllbot backdoor dropper, disguised as a Korean Windows hotpatch<br />

Group: dde039353663cdb14337e6793ca2a8cf<br />

b7f2595dd62d1174ce6e5ddf43bf2b42f7001c7a4ec3c4cbe3359e30c674ed83<br />

KorDllbot backdoor<br />

Group: 940888706c199a8342ef85eb60fecbb6<br />

b039383a19e3da74a5a631dfe4e505020a5c5799578187e4ccc016c22872b246<br />

KorDllbot backdoor service installer<br />

f4a06dd6ebfd0805d445f45ce33d7bba4a33c561111c39a347024069a78169e9<br />

KorDllbot backdoor service<br />

3acaea01fd79484d5a72c72e1b9c2fbf391145fb1533c17a8a83e897d8777f82<br />

Removes backdoor service<br />

81067f057d523fdcddf7df1da39a7c3614c45f6bff6bd387274c049244efda3b<br />

Removes backdoor service<br />

Group: 7940994b304aa1ac4d2d64e6b7b8890d<br />

218ee208323dc38ebc7f63dba73fac5541b53d7ce1858131fa3bfd434003091d<br />

KorDllbot backdoor service installer<br />

73edc54abb3d6b8df6bd1e4a77c373314cbe99a660c8c6eea770673063f55503<br />

KorDllbot backdoor service<br />

Group: 328e8fb5f3ec48894f6af0eb0a821d01

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!