Sample

Metadata

SHA256
c4750651611e913c3d83e85cfaa90b791da2bf37cbe3c62660877323ee9c6e52
Difficulty
easy
Platform
Windows
Tags
.net destroyer msil powershell
Likes
0
Views
25
Submitter
struppigel

Analysis

Goal

Figure out how to recover a system infected by this malware without reinstalling the operating system. What permanent changes are done to the system? Which of these make the system unbootable?

Description

This is a .NET assembly, but most of the important work is in the .NET resources.

Recommended Tools

dnspyex

Solutions

No solutions available yet.

Image

Sample image

Comments

Please login to view and post comments.