-->

whaust

2020年4月27日 星期一

Malware : ShadowBroker , md5sum : Generate MD5 value

date > date.txt
md5sum date.txt
1e53389b6fef60fbb7663b2b890111b0  date.txt
命令 : md5sum

Let's do it !

ShadowBroker.malware

get all the file in C:\Windows\NetworkDistribution\

md5sum * > readme.txt
c31d696f93ec84e635c4560034340e171  adfw-2.dll
770d0caa24d964ea7c04ff5daf290f08  adfw.dll
ee2d6e1d976a3a92fb1c2524278922ae  cnli-0.dll
a539d27f33ef16e52430d3d2e92e9d5c  cnli-1.dll
3c2fe2dbdf09cfa869344fdb53307cb2  coli-0.dll
f82fa69bfe0522163eb0cf8365497da2  crli-0.dll
1ca9e6eb86036daea4dfa3297f70d542  dmgd-1.dll
a05c7011ab464e6c353a057973f5a06e  dmgd-4.dll
d9b5b26f0423230e99768092f17919a3  esco-0.dll
3e5d06dc6e7890e1800cf24c9f599856  etch-0.dll
4ff94c163565a38a27cf997ad07b3d69  etchCore-0.x64.dll
1f0669f13dc0545917e8397063f806db  etchCore-0.x86.dll
47106682e18b0c53881252061ffcaa2d  eteb-2.dll
24aa99837d14bee5da2e2339b07f9d4c  etebCore-2.x64.dll
89b7dac7d9ce5b75b08f5d037edd3869  etebCore-2.x86.dll
756b6353239874d64291e399584ac9e5  Eternalblue-2.2.0.fb
5b18e38e2b99ebd24937751e936b2161  Eternalchampion-2.0.0.fb
ba629216db6cf7c0c720054b0c9a13f3  exma-1.dll
649b368c52de83e52474a20ce4f83425  exma.dll
4803a7863da607333378b773b6a17f4c  iconv.dll
43aac72a9602ef53c5769f04e1be7386  libcurl.dll
f01f09fe90d0f810c44dce4e94785227  libeay32.dll
5adcbe8bbba0f6e733550ce8a9762fa0  libiconv-2.dll
9a5cec05e9c158cbc51cdc972693363d  libxml2.dll
1e9e29a4e8b29d074827c1bc9f1f6d27  out.dll
6fe4544d00b77e0295e779e82d8f0fe5  pcla-0.dll
00dd6b018c3c2d347df43f779715bca5  pcre-0.dll
09836461312a3781af6e1298c6b2c249  pcrecpp-0.dll
30017e300c6d92e126bf92017c195c37  pcreposix-0.dll
2f0a52ce4f445c6e656ecebbcaceade5  posh-0.dll
b777086fd83d0bc1dccdc7c126b207d0  posh.dll
d41d8cd98f00b204e9800998ecf8427e  process1.txt
7beb08b9b4fc27c883f593f6abc53eee  pytrch.py
aac9bc7fd2ed52d277199ccf373a996f  pytrch.pyc
2c2ef3b01ffa0ab28b3bd7c88f2ac22f  _pytrch.pyd
8969668746ae64ca002cc7289cd1c5da  riar-2.dll
e53f9e6f1916103aab8703160ad130c0  riar.dll
c24315b0585b852110977dacafe6c8c1  spoolsv.exe
8b0da6527cfbbd3897c7f206861d5951  spoolsv.xml
5e8ecdc3e70e2ecb0893cbda2c18906f  ssleay32.dll
eccf12c44c88e76671a427420b08d4c2  svchost.xml
0647dcd31c77d1ee6f8fac285104771a  tibe-1.dll
f0881d5a7f75389deba3eff3f4df09ac  tibe-2.dll
f61e81eaf4a9ac9cd52010da3954c2a9  tibe.dll
8b0a4ce79f5ecdb17ad168e35db0d0f9  trch-0.dll
838ceb02081ac27de43da56bec20fc76  trch-1.dll
01d5adbfee39c5807ee46f7990f5fda7  trch.dll
46f7b320b13a4b618946042360215179  trfo-0.dll
3e89c56056e5525bf4d9e52b28fbbca7  trfo-2.dll
d1aae806243cc0bedb83a22919a3a660  trfo.dll
83076104ae977d850d1e015704e5730a  tucl-1.dll
1fa609bc0d252ca0915d6aed2df7ccc2  tucl.dll
6b7276e4aa7a1e50735d2f6923b40de4  ucl.dll
6dc722c9844e61427a47a2759a8fbec0  x64.dll
95786b6c28bf8dba7bbfeeba9e1ec27a  x86.dll
5b72ccfa122e403919a613785779af49  xdvl-0.dll
9744f0000284c2807de0651c7e0d980a  zibe.dll
e4ad4df4e41240587b4fe8bbcb32db15  zlib1.dll

沒有留言:

張貼留言

Popular