649 / APT38-DYEPACK

Reverse engineered APT38 DYEPACK samples used to empty SWIFT banking servers. Use caution when handling live binaries.

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

APT38 DYEPACK FRAMEWORK

Reverse engineered using IDA Pro + Ghidra. Live binaries are in /sample/binaries.zip

Password: infected

DISCLAIMER

Samples are for malware research ONLY. Do not use decompiled versions of the framework to cause harm, I am not responsible for any damages caused. Handle live binaries with care, and use a VM for any dynamic analysis.

alt text alt text alt text alt text alt text alt text alt text

About

Reverse engineered APT38 DYEPACK samples used to empty SWIFT banking servers. Use caution when handling live binaries.