Sample
- SHA256
-
c4750651611e913c3d83e85cfaa90b791da2bf37cbe3c62660877323ee9c6e52 - Difficulty
- easy
- Platform
- Windows
- Tags
- .net destroyer msil powershell
- Likes
- 0
- Views
- 25
- Submitter
- struppigel
Analysis
Goal
Figure out how to recover a system infected by this malware without reinstalling the operating system. What permanent changes are done to the system? Which of these make the system unbootable?
Description
This is a .NET assembly, but most of the important work is in the .NET resources.
Recommended Tools
dnspyex
Image
Comments
Please login to view and post comments.