DRG Online Challenge February 2014

A web server was compromised and while we expected to find some malware, backdoors or IRC bounces instead we found a set of files. The crackers were using the server to periodically exchange these files between one another via the the accessible HTTP service. We are sharing with you one set of files in order to see if you can help understand what they are and what was going on. Solutions should be sent to dragon@dragonresearchgroup.org. Correct submissions will be publicly acknowledged next month. The best solution write-up will be featured in blog post next month.

