NanoCore Malware
Technical details of NanoCore Identification Sample didn’t exist in virus total as shown in figure below. The following table contains list of artifacts that had been analyzed within this document. PE timestamp SHA256 Size in bytes File name Description Thu Jun 25 03:38:24 2020 C0E3A49CBB496D4B77897BF1BBB7564391A37CEC 200.00 KB (204800 bytes) Debug.exe dropper Summary NanoCore is a Remote Access Trojan or RAT. This malware is highly customizable with plugins which allow attackers to tailor its functionality to their needs. Nanocore is created with the .NET framework which has a lot of function to enable you steal any information to control current machine and sent it to C&C server. Important Note The initialize stage of current sample (NanoCore malware) is exactly the same code of malware njRAT. Link Njrat Code of NanoCore malware Code of Nirjart malware T...