Application name: SimpleBinder
Version: 1.0
Coded in: MASM32 SDK
Author: David.F.
Stub size: 7,50 KB
Detection rate: 1 on 14 (7%) (scanned 2013-02-07 03:26:50 (GMT 1))
Asquared (5.1.0.3) CLEAN
Avast (5.0) CLEAN
AVG (10.0.0.1190) CLEAN
Avira (7.11.7.12) TR/Dropper.Gen
BitDefender (7.0.0.2555) CLEAN
ClamAV (0.97.4) CLEAN
Comodo (1.0) CLEAN
DrWeb (5.0.2) CLEAN
Fprot (6.0) CLEAN
IkarusT3 (T31001097) CLEAN
Panda (10.0.3.0) CLEAN
STOPZilla (5.0.0.0) CLEAN
TrendMicro (9.200.0.1012) CLEAN
VBA32 (3.12.0.300) CLEAN
GUI:
Icons pack:
Very simple binder that binds two exe files into one. No encryption in this version.
Files dropped:
- C:\Windows\tplink.exe
- C:\Windows\winupdater.exe
Files are run by ShellExecute function.
Binaries attached to post.
Archive password: hackhound