Blogs
Malware Library
Zero-Dwell Threat Intelligence Reports
Vectored Exception Handling and Memory Allocation APIs Define NightSpire Runtime Stack
.exe
64bits
payload
NightSpire Encoder Variant Accesses Windows Credential Vault Prior to Encryption Stage
.exe
64bits
High-Severity Encoder Build Leveraging Waitable Timers and Vectored Exception Handling
.exe
64bits
Static 4.7MB Go Ransomware Implant Deployed as 5uy9qxq91.exe in Windows Path
.exe
64bits
payload
NightSpire Encoder Sample Manipulates desktop.ini and Browser Credential Stores
.exe
Browser Credential File Access and Thread Context Control Observed in NightSpire Sample
.exe
64bits
payload
Encoder-Class NightSpire Implant Identified as enc.exe in Windows Deployment Path
.exe
64bits
NightSpire Encoder Build (Go 1.24.1) Identified with 57-Engine Ransomware Consensus
.exe
64bits
Multi-Engine Ransomware Verdict Aligns with Encoder-Class NightSpire Deployment
.exe
64bits
NightSpire Ransomware Triggers Uncommon Svchost Execution Pattern During Runtime
.exe
64bits
Windows GUI Go Binary Deployed as 98wjn2guh.exe Exhibits High-Severity Ransomware Profile
.exe
64bits
payload
NightSpire Ransomware Executes Credential Vault Harvesting Prior to Encryption Phase
.exe
64bits
detect-debug-environment
Posts navigation
← Previous
1
2
3
4
5
…
60
Next →