Im going to start a new thing for every infected thread , ASSUMING it has the clean BINs binded to it
I will reupload the the Content but the CLEAN Version.
Now it wont always be possible as some dont have the Binded Bins or are just plain out all infected
This one just used Classic EXE binding it dropped all files in the
%AppData% Roaming Folder nothing special Specifically ("1.exe" , "0.exe" , "winsrc.exe")
===========================================================
Downloads
===========================================================
Zippyshare
AnonFiles
MirrorAce
MultiUp (didnt know multiup requires an acc to download so fuck this link)
REAL VT Bin Scan:
Clown of the Day Spreading the shit made RAT goes to:
Images of Analysis:
Edited by ObbedCode, 26 October 2022 - 02:58 AM.