ALERT!
Click here to register with a few steps and explore all our cool stuff we have to offer!

Jump to content



Photo

Chaos Ransomware Builder V4 - Cleaned by ObbedCode


  • Please log in to reply
Chaos Ransomware Builder V4 - Cleaned by ObbedCode

#51

Evelyn555
Evelyn555
    Offline
    0
    Rep
    2
    Likes

    Veteran

Posts: 763
Threads: 0
Joined: Oct 13, 2020
Credits: 0

Three years registered
#51

has anyone tried?


  • 0

#52

newkingofawe
newkingofawe
    Offline
    0
    Rep
    0
    Likes

    Advanced Member

  • PipPipPipPip
Posts: 145
Threads: 0
Joined: Oct 30, 2022
Credits: 0

One year registered
#52

Thanks bro


  • 0

#53

windowscheif
windowscheif
    Offline
    0
    Rep
    1
    Likes

    Member

Posts: 29
Threads: 0
Joined: Feb 03, 2023
Credits: 0
One year registered
#53

nice


  • 0

#54

hero4587
hero4587
    Offline
    0
    Rep
    0
    Likes

    Lurker

Posts: 2
Threads: 0
Joined: Mar 25, 2023
Credits: 0
One year registered
#54

 

To clean the file we have to rename a .DLL to .EXE and modify some sus IL Code.

Removed the Original .exe that is just a virus :(

 

Note I cleaned the File, You Can analyze the file for yourself in DnSpy

Still Run everything in a Controlled Environment. My version is the Fully Cleaned Version.

 

 Even has the Decryptor in the same Folder

  

Person Spreading Malware:

Spoiler

 

Original Report:

 

Spoiler

 

===================================================================

DOWNLOAD

===================================================================

Password: Chaos46366


Upload.ee

 

 

Anonfile

 

 

Zippyshare

 

 

Mirror Ace

 

 

===================================================================

SCREENSHOTS

===================================================================

 

Spoiler

 

Original Analysis:

(Still always run EVERYTHING in Sandbox / Virtual Machine)

 

Stub SRC:

Please Login or Register to see this Hidden Content

 

VT:

Please Login or Register to see this Hidden Content

HB:

Please Login or Register to see this Hidden Content

 

Please Login or Register to see this Hidden Content

 

Thanks Bro


  • 0

#55

myapple851
myapple851
    Offline
    0
    Rep
    0
    Likes

    Member

Posts: 68
Threads: 0
Joined: Dec 29, 2020
Credits: 0

Three years registered
#55

thanks you man for this.


  • 0

#56

GX11Z
GX11Z
    Offline
    0
    Rep
    1
    Likes

    Member

  • PipPipPip
Posts: 41
Threads: 0
Joined: Jul 01, 2022
Credits: 0
One year registered
#56

this is exactly what I've been looking for, thank you sir!


  • 0

#57

bigpenis3inch
bigpenis3inch
    Offline
    0
    Rep
    0
    Likes

    New Member

Posts: 11
Threads: 0
Joined: Mar 30, 2023
Credits: 0
One year registered
#57

 

To clean the file we have to rename a .DLL to .EXE and modify some sus IL Code.

Removed the Original .exe that is just a virus :(

 

Note I cleaned the File, You Can analyze the file for yourself in DnSpy

Still Run everything in a Controlled Environment. My version is the Fully Cleaned Version.

 

 Even has the Decryptor in the same Folder

  

Person Spreading Malware:

Spoiler

 

Original Report:

 

Spoiler

 

===================================================================

DOWNLOAD

===================================================================

Password: Chaos46366


Upload.ee

 

 

Anonfile

 

 

Zippyshare

 

 

Mirror Ace

 

 

===================================================================

SCREENSHOTS

===================================================================

 

Spoiler

 

Original Analysis:

(Still always run EVERYTHING in Sandbox / Virtual Machine)

 

Stub SRC:

Please Login or Register to see this Hidden Content

 

VT:

Please Login or Register to see this Hidden Content

HB:

Please Login or Register to see this Hidden Content

 

Please Login or Register to see this Hidden Content

 

oldie but goodie the decrypter might be a virus tho...


  • 0

#58

shaolinping
shaolinping
    Offline
    0
    Rep
    0
    Likes

    Advanced Member

Posts: 94
Threads: 0
Joined: Mar 02, 2023
Credits: 0
One year registered
#58

thank you

 


  • 0

#59

miz3px
miz3px
    Offline
    0
    Rep
    11
    Likes

    Addicted

Posts: 166
Threads: 1
Joined: Mar 22, 2023
Credits: 0
One year registered
#59

Thanks you


  • 0

#60

t893zahgaeoigj
t893zahgaeoigj
    Offline
    0
    Rep
    0
    Likes

    Lurker

Posts: 7
Threads: 0
Joined: Apr 05, 2023
Credits: 0
One year registered
#60

ty


  • 0


 Users browsing this thread: and 1 guests