JS/Nemucod (Zippy ransomeware)

Forum for analysis and discussion about malware.
heart888
Posts: 18
Joined: Tue Mar 01, 2016 11:04 pm

Re: Malware collection

Post by heart888 » Sun Mar 05, 2017 11:09 pm

https://www.virustotal.com/en/file/3199 ... /analysis/

nemucod /downloader /downloads ransomware

wxw.dpolecnaz.top/admin.php?=1.gif
You do not have the required permissions to view the files attached to this post.

ikolor
Posts: 322
Joined: Thu Jun 05, 2014 2:20 pm
Location: Poland

Re: Malware collection

Post by ikolor » Fri Apr 07, 2017 5:28 pm

You do not have the required permissions to view the files attached to this post.

ikolor
Posts: 322
Joined: Thu Jun 05, 2014 2:20 pm
Location: Poland

Re: Malware collection

Post by ikolor » Thu Apr 27, 2017 2:54 pm

You do not have the required permissions to view the files attached to this post.

heart888
Posts: 18
Joined: Tue Mar 01, 2016 11:04 pm

Re: Malware collection

Post by heart888 » Fri Jul 21, 2017 5:12 am

You do not have the required permissions to view the files attached to this post.

Antelox
Posts: 254
Joined: Sun Mar 21, 2010 10:38 pm
Contact:

Re: Malware collection

Post by Antelox » Fri Jul 21, 2017 10:55 am

This is NemucodAES ransomware, a multipurpose javascript malware capable of encrypting file (last variant uses AES128) as well as downloading other malware families (usually Kovter).

BR,

Antelox

markusg
Posts: 734
Joined: Mon Mar 15, 2010 2:53 pm

Re: Malware collection

Post by markusg » Mon Jul 31, 2017 3:15 pm

ransomware downloader
You do not have the required permissions to view the files attached to this post.

ikolor
Posts: 322
Joined: Thu Jun 05, 2014 2:20 pm
Location: Poland

Re: Malware collection

Post by ikolor » Sat Aug 05, 2017 12:24 pm

You do not have the required permissions to view the files attached to this post.

Post Reply