mirror of
https://github.com/CyberMonitor/APT_CyberCriminal_Campagin_Collections
synced 2024-07-05 09:32:16 +00:00
.. | ||
CMakeLists.txt | ||
file_util.cpp | ||
file_util.h | ||
lotus_headers.cpp | ||
lotus_headers.h | ||
lotus_print.cpp | ||
lotus_print.h | ||
main.cpp | ||
README.md |
lotus_parser
Parses a custom executable format used by the Ocean Lotus APT: Samples:
- cd7e75930194fff08a05bbb1c412c1f4a8e709ac0a8b0d3ba44d36915bc02edc - SPORDER.cab (set #1)
- 3e341783eca3139fdec2e1b3143b206f925ab0f1a47de372035e5a64eef76d8f - SPORDER.blob (set #1)
- d93500629000e01013073f3db06f6a659557503dbf42a92c312c16aaf4030298 - SPORDER.cab (set #2)
- 90ab82a7f777bedd0703e1e7eb8e68766b5c86d95b65f56a016f8bdb3544a8f4 - SPORDER.blob (set #2)