Zero-Dwell Threat Intelligence Reports

Obfuscated .NET Trojan Using WMI Checks And Long Sleep Evasion.exe
long-sleeps overlay detect-debug-environment calls-wmi checks-memory-available assembly
AsyncRAT-Linked Payload Using Encrypted TCP Command Channels.exe
long-sleeps detect-debug-environment calls-wmi checks-memory-available spreader assembly malware checks-disk-space
Quasar RAT Network Beaconing And Credential Theft Behavior.exe
detect-debug-environment calls-wmi checks-user-input assembly malware
AsyncRAT Payload Establishing Encrypted Remote Command Execution Channel.exe
64bits detect-debug-environment calls-wmi spreader assembly
Obfuscated Dropper Establishing Encrypted Remote Access Channels.exe
long-sleeps overlay detect-debug-environment spreader malware executes-dropped-file persistence checks-usb-bus
Obfuscated .NET Payload Using Long Sleep And Anti-Debug Evasion.exe
64bits long-sleeps detect-debug-environment spreader assembly checks-cpu-name persistence