Underc0de

[In]Seguridad Informática => Análisis y desarrollo de malwares => Mensaje iniciado por: N3G0 en Abril 24, 2015, 07:23:53 AM

Título: Crypter HellBoy ¦ By: N3G0
Publicado por: N3G0 en Abril 24, 2015, 07:23:53 AM
(http://i.imgur.com/xJOJh4W.png)


                  Filename: N3G0.exe
                  Type: File
                  Filesize: 99598 bytes
                  Date: 24/04/2015 - 12:04 GMT+2
                  MD5: 2f29037beb884a2be168c38cd3edc3eb
                  SHA1: 294590a3801284cb676236d844c6fb1945e88fe2
                  Status: Infected
                  Result: 1/35
                  
                     AVG Free - OK
                     Avast - OK
                     AntiVir (Avira) - OK
                     BitDefender - OK
                     Clam Antivirus - OK
                     COMODO Internet Security - OK
                     Dr.Web - OK
                     eTrust-Vet - OK
                     F-PROT Antivirus - OK
                     F-Secure Internet Security - OK
                     G Data - OK
                     IKARUS Security - OK
                     Kaspersky Antivirus - OK
                     McAfee - OK
                     MS Security Essentials - OK
                     ESET NOD32 - OK
                     Norman - OK
                     Norton Antivirus - OK
                     Panda Security - OK
                     A-Squared - OK
                     Quick Heal Antivirus - Malware.Generic.Vb621115
                     Solo Antivirus - OK
                     Sophos - OK
                     Trend Micro Internet Security - OK
                     VBA32 Antivirus - OK
                     Zoner AntiVirus - OK
                     Ad-Aware - OK
                     BullGuard - OK
                     FortiClient - OK
                     K7 Ultimate - OK
                     NANO Antivirus - OK
                     Panda CommandLine - OK
                     SUPERAntiSpyware - OK
                     Twister Antivirus - OK
                     VIPRE - OK
               
                  Scan Result: http://v2.scan.majyx.net/?page=results&sid=538339 (http://v2.scan.majyx.net/?page=results&sid=538339)
                  Scan by MaJyx Scanner (http://scan.majyx.net/)
                  



                  Filename: CyberGate.exe
                  Type: File
                  Filesize: 401260 bytes
                  Date: 24/04/2015 - 12:05 GMT+2
                  MD5: e022da63fa3d853ef8807d1794c106bc
                  SHA1: 5c048626b4080a5973325bc35d65d13ed6e85e44
                  Status: Clean
                  Result: 0/35
                  
                     AVG Free - OK
                     Avast - OK
                     AntiVir (Avira) - OK
                     BitDefender - OK
                     Clam Antivirus - OK
                     COMODO Internet Security - OK
                     Dr.Web - OK
                     eTrust-Vet - OK
                     F-PROT Antivirus - OK
                     F-Secure Internet Security - OK
                     G Data - OK
                     IKARUS Security - OK
                     Kaspersky Antivirus - OK
                     McAfee - OK
                     MS Security Essentials - OK
                     ESET NOD32 - OK
                     Norman - OK
                     Norton Antivirus - OK
                     Panda Security - OK
                     A-Squared - OK
                     Quick Heal Antivirus - OK
                     Solo Antivirus - OK
                     Sophos - OK
                     Trend Micro Internet Security - OK
                     VBA32 Antivirus - OK
                     Zoner AntiVirus - OK
                     Ad-Aware - OK
                     BullGuard - OK
                     FortiClient - OK
                     K7 Ultimate - OK
                     NANO Antivirus - OK
                     Panda CommandLine - OK
                     SUPERAntiSpyware - OK
                     Twister Antivirus - OK
                     VIPRE - OK
               
                  Scan Result: http://v2.scan.majyx.net/?page=results&sid=538340 (http://v2.scan.majyx.net/?page=results&sid=538340)
                  Scan by MaJyx Scanner (http://scan.majyx.net/)
                  



                  Filename: DarkComet RAT.exe
                  Type: File
                  Filesize: 775020 bytes
                  Date: 24/04/2015 - 12:06 GMT+2
                  MD5: 55c786eba8f8e2df9480dfd5150c1ed1
                  SHA1: 2d09bf75c22ea0c2b6e561922f73a52c1c4138b9
                  Status: Clean
                  Result: 0/35
                  
                     AVG Free - OK
                     Avast - OK
                     AntiVir (Avira) - OK
                     BitDefender - OK
                     Clam Antivirus - OK
                     COMODO Internet Security - OK
                     Dr.Web - OK
                     eTrust-Vet - OK
                     F-PROT Antivirus - OK
                     F-Secure Internet Security - OK
                     G Data - OK
                     IKARUS Security - OK
                     Kaspersky Antivirus - OK
                     McAfee - OK
                     MS Security Essentials - OK
                     ESET NOD32 - OK
                     Norman - OK
                     Norton Antivirus - OK
                     Panda Security - OK
                     A-Squared - OK
                     Quick Heal Antivirus - OK
                     Solo Antivirus - OK
                     Sophos - OK
                     Trend Micro Internet Security - OK
                     VBA32 Antivirus - OK
                     Zoner AntiVirus - OK
                     Ad-Aware - OK
                     BullGuard - OK
                     FortiClient - OK
                     K7 Ultimate - OK
                     NANO Antivirus - OK
                     Panda CommandLine - OK
                     SUPERAntiSpyware - OK
                     Twister Antivirus - OK
                     VIPRE - OK
               
                  Scan Result: http://v2.scan.majyx.net/?page=results&sid=538343 (http://v2.scan.majyx.net/?page=results&sid=538343)
                  Scan by MaJyx Scanner (http://scan.majyx.net/)
                  



                  Filename: Spycronic.exe
                  Type: File
                  Filesize: 388972 bytes
                  Date: 24/04/2015 - 12:08 GMT+2
                  MD5: 379feb638f364bb488ce0e44a8ce9796
                  SHA1: 989fd1b774b20040269f46351994618ec28f7646
                  Status: Infected
                  Result: 1/35
                  
                     AVG Free - OK
                     Avast - OK
                     AntiVir (Avira) - OK
                     BitDefender - OK
                     Clam Antivirus - OK
                     COMODO Internet Security - OK
                     Dr.Web - OK
                     eTrust-Vet - OK
                     F-PROT Antivirus - OK
                     F-Secure Internet Security - OK
                     G Data - OK
                     IKARUS Security - Trojan.Win32.Injector
                     Kaspersky Antivirus - OK
                     McAfee - OK
                     MS Security Essentials - OK
                     ESET NOD32 - OK
                     Norman - OK
                     Norton Antivirus - OK
                     Panda Security - OK
                     A-Squared - OK
                     Quick Heal Antivirus - OK
                     Solo Antivirus - OK
                     Sophos - OK
                     Trend Micro Internet Security - OK
                     VBA32 Antivirus - OK
                     Zoner AntiVirus - OK
                     Ad-Aware - OK
                     BullGuard - OK
                     FortiClient - OK
                     K7 Ultimate - OK
                     NANO Antivirus - OK
                     Panda CommandLine - OK
                     SUPERAntiSpyware - OK
                     Twister Antivirus - OK
                     VIPRE - OK
               
                  Scan Result: http://v2.scan.majyx.net/?page=results&sid=538344 (http://v2.scan.majyx.net/?page=results&sid=538344)
                  Scan by MaJyx Scanner (http://scan.majyx.net/)
                  




                  Filename: SpyNet.exe
                  Type: File
                  Filesize: 397164 bytes
                  Date: 24/04/2015 - 12:08 GMT+2
                  MD5: afb71b4e76b02ef9bad7df413df68a3a
                  SHA1: 20c9f38dcba0fadd81132ac9a59f7bd217d008f6
                  Status: Infected
                  Result: 1/35
                  
                     AVG Free - OK
                     Avast - OK
                     AntiVir (Avira) - OK
                     BitDefender - OK
                     Clam Antivirus - OK
                     COMODO Internet Security - OK
                     Dr.Web - OK
                     eTrust-Vet - OK
                     F-PROT Antivirus - OK
                     F-Secure Internet Security - OK
                     G Data - OK
                     IKARUS Security - Trojan.Win32.Injector
                     Kaspersky Antivirus - OK
                     McAfee - OK
                     MS Security Essentials - OK
                     ESET NOD32 - OK
                     Norman - OK
                     Norton Antivirus - OK
                     Panda Security - OK
                     A-Squared - OK
                     Quick Heal Antivirus - OK
                     Solo Antivirus - OK
                     Sophos - OK
                     Trend Micro Internet Security - OK
                     VBA32 Antivirus - OK
                     Zoner AntiVirus - OK
                     Ad-Aware - OK
                     BullGuard - OK
                     FortiClient - OK
                     K7 Ultimate - OK
                     NANO Antivirus - OK
                     Panda CommandLine - OK
                     SUPERAntiSpyware - OK
                     Twister Antivirus - OK
                     VIPRE - OK
               
                  Scan Result: http://v2.scan.majyx.net/?page=results&sid=538345 (http://v2.scan.majyx.net/?page=results&sid=538345)
                  Scan by MaJyx Scanner (http://scan.majyx.net/)
                  



http://www.datafilehost.com/d/b109dfe4 (http://www.datafilehost.com/d/b109dfe4)


Reverse - TIGO-3FX - Base 64 - Hex


52 54 46 6C 53 55 51 78 56 6C 52 46 4D 57 4E 49 52 44 46 58 53 58 64 6B 56 31 4A 33 4D 58 6C 59


Siggggggggggy  > Offset 52 = 00
Título: Re:Crypter HellBoy ¦ By: N3G0
Publicado por: Roda en Abril 24, 2015, 12:59:43 PM
Estas avanzando amigo y es un alegria poder ayudarte en tus avances
sigue asi!