A forum for reverse engineering, OS internals and malware analysis 

Forum for analysis and discussion about malware.
 #5624  by EP_X0FF
 Thu Mar 24, 2011 1:00 pm
markusg wrote:Crypter-nin.exe

http://www.virustotal.com/file-scan/rep ... 1300966343
Crypted with DevFrost++ crap. Yet another super duper cryptor.
Image
~ ~ Features

[+] Encryption 2 types [RC4 / OFF]
[+] Key generator
[+] EOF
[+] Installation [Windows / System32 / Aplication Data]
[+] Spread [USB / P2P]
[+] Melt
[+] Antis [8 rates]
[+] Autorun
[+] Fake Messages
[+] Pump
[+] Delay time
[Br] Note: All features 100% functional.
Payload - Delphi coded malware - Worm.Win32.Bybz.

Posts moved.