TorrentLocker ransomware

Forum for analysis and discussion about malware.
ikolor
Posts: 281
Joined: Thu Jun 05, 2014 2:20 pm
Location: Poland

Re: Malware collection

Post by ikolor » Tue Jul 19, 2016 7:19 pm

You do not have the required permissions to view the files attached to this post.

User avatar
xors
Posts: 145
Joined: Mon May 23, 2016 2:01 am

Re: Malware collection

Post by xors » Tue Jul 19, 2016 9:02 pm

Torrentlocker.
You do not have the required permissions to view the files attached to this post.
@xorsthingsv2

ikolor
Posts: 281
Joined: Thu Jun 05, 2014 2:20 pm
Location: Poland

Re: Malware collection

Post by ikolor » Wed Sep 14, 2016 2:12 pm

You do not have the required permissions to view the files attached to this post.

Bogdan-Mihai
Posts: 16
Joined: Thu Mar 24, 2016 9:37 am

Re: Malware collection

Post by Bogdan-Mihai » Mon Oct 03, 2016 10:39 am

A Torrentlocker (CryptoLocker family) from a recent campaign. Served from a JS in a zip file.
You do not have the required permissions to view the files attached to this post.

ikolor
Posts: 281
Joined: Thu Jun 05, 2014 2:20 pm
Location: Poland

Re: Malware collection

Post by ikolor » Tue Oct 04, 2016 4:39 pm

next ..Sorry I do not remember this links


https://www.virustotal.com/en/file/75f8 ... 475598716/
You do not have the required permissions to view the files attached to this post.

User avatar
xors
Posts: 145
Joined: Mon May 23, 2016 2:01 am

Re: Malware collection

Post by xors » Tue Oct 04, 2016 6:15 pm

ikolor wrote:next ..Sorry I do not remember this links


https://www.virustotal.com/en/file/75f8 ... 475598716/
Torrentlocker ?
You do not have the required permissions to view the files attached to this post.
@xorsthingsv2

User avatar
xors
Posts: 145
Joined: Mon May 23, 2016 2:01 am

Re: TorrentLocker ransomware

Post by xors » Thu Nov 10, 2016 10:21 pm

One more
You do not have the required permissions to view the files attached to this post.
@xorsthingsv2

Tester0116
Posts: 1
Joined: Sun Feb 12, 2017 3:21 pm

Re: TorrentLocker ransomware

Post by Tester0116 » Mon Feb 13, 2017 12:16 am

Hi all. I am a beginner in RE. I would like to know the approach on analyzing the malware. I dumped the malware sample into PE Studio and I can see isDebuggerPresent, GetTickCount, etc. Is this malware packed? If so what strategy can I use to unpack?

Post Reply