A forum for reverse engineering, OS internals and malware analysis 

Search found 37 matches

 Go to advanced search

Re: Powershell_ise crashes when i try to open it.

 by hackr8 ¦  Sat Jul 20, 2019 6:09 pm ¦  Forum: Newbie Questions ¦  Topic: Powershell_ise crashes when i try to open it. ¦  Replies: 5 ¦  Views: 1114

I installed the same powershell version on a vista vm and it was working there. I tried copying the whole Powershell folder from the vm to my pc but nothing changed. This means that the files are not corrupt. Are there any registry entries or hidden files that might be causing this problem?

Re: Powershell_ise crashes when i try to open it.

 by hackr8 ¦  Fri Jul 19, 2019 10:19 am ¦  Forum: Newbie Questions ¦  Topic: Powershell_ise crashes when i try to open it. ¦  Replies: 5 ¦  Views: 1114

I tried reinstalling .NET Fremework but the problem remained. About reinstalling Powershell, i found a microsoft link with the powershell update but unfortunately i couldn't find anything about Powershell ISE... The update does not include it. I think there are only two ways for the problem to be so...

Re: Powershell_ise crashes when i try to open it.

 by hackr8 ¦  Mon Jul 15, 2019 12:22 pm ¦  Forum: Newbie Questions ¦  Topic: Powershell_ise crashes when i try to open it. ¦  Replies: 5 ¦  Views: 1114

Unfortunately, dnspy is not supported on my pc due to my OS being windows vista and my net framework version being below the required one. Additionally, i found out that no Wpf application will load on my pc and when i try to make one with visual studio 2008 the designer crashes. If i try to debug i...

Powershell_ise crashes when i try to open it.

 by hackr8 ¦  Sat Jun 29, 2019 12:40 pm ¦  Forum: Newbie Questions ¦  Topic: Powershell_ise crashes when i try to open it. ¦  Replies: 5 ¦  Views: 1114

For some reason, powershell_ise crashes upon launch. I noticed this a few months ago. It worked perfectly before. The powershell console works perfectly. Only the ISE crashes. My OS version is x86 windows vista 6.0.6002.2.2.0.768.3 and my powershell version is 1.0. Can you help me? Here is a screens...

Robin Ransomware

 by hackr8 ¦  Mon Jun 03, 2019 8:45 am ¦  Forum: Completed Malware Requests ¦  Topic: Robin Ransomware ¦  Replies: 1 ¦  Views: 694

Hello, I am looking for samples of the robin hood ransomware: SHA-256: 3bc78141ff3f742c5e942993adfbef39c2127f9682a303b5e786ed7f9a8d184b VT: https://www.virustotal.com/gui/file/3bc78141ff3f742c5e942993adfbef39c2127f9682a303b5e786ed7f9a8d184b/detection Related Video: https://www.youtube.com/watch?v=hC...

Re: Office 97-2003 macro viruses

 by hackr8 ¦  Sun May 19, 2019 5:35 pm ¦  Forum: Completed Malware Requests ¦  Topic: Office 97-2003 macro viruses ¦  Replies: 3 ¦  Views: 751

Sir you are breaking the forum rules.

Re: GoldenEye Ransomware XLS Dropper

 by hackr8 ¦  Sat May 18, 2019 11:36 am ¦  Forum: Completed Malware Requests ¦  Topic: GoldenEye Ransomware XLS Dropper ¦  Replies: 3 ¦  Views: 776

Sir you are breaking the rules again!

Heazycrome

 by hackr8 ¦  Fri May 03, 2019 11:23 am ¦  Forum: Completed Malware Requests ¦  Topic: Heazycrome ¦  Replies: 1 ¦  Views: 520

Hello, I am looking for samples of the Heazycrome family: AV name: BrowserModifier:Win32/Heazycrome (Microsoft) Information: https://www.microsoft.com/en-us/wdsi/threats/malware-encyclopedia-description?Name=BrowserModifier:Win32/Heazycrome MD5's : 95583b0da381a3455b90f04f2f2882c1 d8f7edccd78cf30b15...

TrojanDownloader:VBS/Bancos.A

 by hackr8 ¦  Sun Apr 14, 2019 11:15 am ¦  Forum: Completed Malware Requests ¦  Topic: TrojanDownloader:VBS/Bancos.A ¦  Replies: 2 ¦  Views: 630

Hello, I am looking for this particular sample: TrojanDownloader:VBS/Bancos.A(Microsoft) SHA-256: 93f488e4bb25977443ff34b593652bea06e7914564af5721727b1acdd453ced9 MD5: 349db5e1fd5fecdca2f264d1379d2b38 Virustotal: https://www.virustotal.com/#/file/93f488e4bb25977443ff34b593652bea06e7914564af5721727b1...

TrojanDownloader.VBS.Agent.REH

 by hackr8 ¦  Sat Apr 13, 2019 11:12 am ¦  Forum: Malware ¦  Topic: TrojanDownloader.VBS.Agent.REH ¦  Replies: 0 ¦  Views: 1252

VBS Trojan with double extension *.doc.vbs Nothing special, the code is a bit complicated though. VirusTotal: https://www.virustotal.com/#/file/34631cbcb4298ac021cedd1b57bd2dcf3b94e24752e67b61a9f37e0cef8ec2ad/detection Direct Download(dangerous): hxxps://onedrive.live.com/download.aspx?cid=FD5AFF729...