Blogs
Malware Library
Zero-Dwell Threat Intelligence Reports
Silverfox-Related Trojan DLL Leverages CEF Library Spoofing for Phishing-Linked Persistence
.dll
64bits
SilentRunLoader Variant Executes as Application form.exe With XOR-Encoded Staging Logic
.exe
64bits
overlay
Win32 Trojan RAR Bundle Employs Government-Assistance Theming for Payload Delivery
.exe
long-sleeps
detect-debug-environment
SilentRunLoader Stealer Executes via SilentRunAndUpload.exe for Covert Run-and-Exfil Workflow
.exe
64bits
overlay
Win32 Spreader DLL Leverages TeamSpeak Control Naming and Runtime API Linking
.dll
64bits
overlay
spreader
Win32 Trojan Archive Masquerades as Benign German ZIP While Hunting Target Processes
.exe
long-sleeps
detect-debug-environment
spreader
Marte-Associated Archive Leverages Script Utilities and CAPE Unhooking for Sandbox Evasion
.exe
long-sleeps
detect-debug-environment
spreader
High-Confidence Buggie Detection: 64-bit DLL Leverages libcef Masquerading and Sandbox Evasion
.dll
64bits
idle
spreader
MuddyWater-Associated Trojan Leverages Malicious PE Section Manipulation and Crypt.XPACK Obfuscation
.exe
overlay
MuddyWater-Linked Stagecomp Sample Executes Persistence via WebView2 Masquerading
.exe
64bits
Win32/MuddyWater Implementation Employs DISPLAY drives Handeler Mimicry for Payload Delivery
.exe
overlay
High-Confidence Ibashade Detection: Win32 Executable Leverages MicroPackage Masquerading for Evasion
.exe
overlay
spreader
Posts navigation
1
2
3
…
60
Next →