Hostile 92% Download

Backdoor.Win32.Ceckno.brw

Named backdoor, Nitol signature

Detects Nitol Malware
SHA-256f4c7cb5578a89f28adf60d63e965b8adc11e32ce00037cac1272becccee68617
MaleculeTh

Evidence

Detects Nitol Malware 0x2740–0x28f0
⋯7 more rows
0x27b000000000fa5900000000000000000000.....Y..........
0x27c0474554205e2626252425245e2524235eGET ^&&%$%$^%$#^
0x27d0262a2a282a2828262a5e252423232425&**(*((&*^%$##$%
0x27e05e262a282a265e2524255e262a2e6874^&*(*&^%$%^&*.ht
0x27f06d474554205e2a25255254472a28265emGET ^*%%RTG*(&^
0x28002546544759484a494a255e262a28292a%FTGYHJIJ%^&*()*
⋯15 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.