Wednesday, September 30, 2015

Collection of ATM Malware, GreenDispenser Samples

Here you can download the latest ATM Malware called GreenDispenser and other related to ATM malware. I will keep update on it. If you have more samples and and hash feel free to leave a comment. Thank you.

Full SHA-256 hash list


GreenDispenser

  • 20a1490b666f8c75c47b682cf10a48b7b0278068cb260b14d8d0584ee6c006a5
  • 50db1f5e9692f217f356a592e413e6c9cb31105a94efc70a5ca1c2c73d95d572
  • 7544e7a798b791cb36caaa1860974f33d30bc4659ceab3063d1ab4fd71c8c7e0
  • 77850f738ba42fd9da299b2282314709ad8dc93623b318b116bfc25c5280c541
  • b7e61f65e147885ec1fe6a787b62d9ee82d1f34f1c9ba8068d3570adca87c54f


Ploutos

  • 0106757fac9d10a8e2a22dce5337f404bfa1c44d3cc0c53af3c7539888bc4025
  • 0df8ac0440a151fac1f6957f7d181640590e1eb3e4c4cbd9968892e59f34f941
  • 34acc4c0b61b5ce0b37c3589f97d1f23e6d84011a241e6f85683ee517ce786f1
  • d99339d3dc6891cdd832754c5739640c62cd229c84e04e9e3cad743c6f66b1b9


Suceful

  • c7cb44e0b075cbc90a7c280ef8f1c69e8fe06e7dabce054b61b10c3105eda1c4
  • d33d69b454efba519bffd3ba63c99ffce058e3105745f8a7ae699f72db1e70eb

Tyupkin

  • b670fe2d803705f811b5a0c9e69ccfec3a6c3a31cfd42a30d9e8902af7b9ed80
  • 16166533c69f2f04110e8b8e9cc45ed2aeaf7850fa68845c64d92ff907dd44f0
  • 6c59cd1e12bc1037031af48b934e9398fc85efb2a067d03b6a100dd8423e5d9b
  • 8bb5c766de0a73dc0eff7c9fce086565b6220465185e258c21c5b9dfb0bef51d
  • 639d2d926325275cb023014d0b446d03f1dcc8526bff1aa72373e27d78a6a674
  • 853fb4e85d8b0ad7c156ad6d3fc4b0340c8b29fa0548a3df758e7845ba8b23ae
  • 3639e8cc463922b427ea20dce8f237c0c0e82aa51d2502c48662e60fb405f677


NeoPocket

  • 85652bbd0379d73395102edc299c892f21a4bba3378aa3b0aaea9b1130022bdd


Download From Google Drive:


  • Click Here to Download (Password Protected Zip)
  • Feel free to ask for the password (prefer email at alternator99 |at| gmail.com).

References:


  • https://www.fireeye.com/blog/threat-research/2015/09/suceful_next_genera.html
  • https://www.proofpoint.com/us/threat-insight/post/Meet-GreenDispenser
  • https://securelist.com/blog/research/66988/tyupkin-manipulating-atm-machines-with-malware/

 

Update:

  • Add another 5 Tyupkin and 4 Ploutos samples. Thanks to n3r0 for the samples.