Blogs
Malware Library
Zero-Dwell Threat Intelligence Reports
Qukart Proxy Trojan Employing WININET API for C2 Communication
.exe
overlay
spreader
Padodor Trojan Dropper Deploying Embedded Payload Through Mandiant-Flagged Config
.exe
overlay
spreader
Backdoor.Win32.Padodor Employing WININET API for Data Exfiltration
.exe
overlay
spreader
Medium-Severity Ryuk Infection Using Delphi-Built Dropper and Overlay Payloads
.exe
overlay
bobsoft
Expiro File Infector Spreads via Compromised Legitimate Executable
.exe
long-sleeps
detect-debug-environment
spreader
Berbew/Qukart Trojan Using ShellServiceObjectDelayLoad Autorun
.exe
overlay
spreader
Temp-Stager Upatre Fetcher Executes Remote Tasks and Writes Overlay Payload
.exe
overlay
spreader
Trojanized Executable Deploys XMRig-Style Miner and Modifies Autoruns
.exe
PlugX-Style Dropper with UPX Sections and Rundown Execution Chains
.exe
overlay
Berbew Proxy Trojan Leveraging Web Event Logger Registry Hooks
.exe
overlay
spreader
Go-based Mimikatz/GoAgent variant credential-theft functionality and potential C2 tunneling
.exe
64bits
overlay
Trojan Downloader (Upatre) Writes Temp EXE and Beacons for Payloads
.exe
overlay
spreader
Posts navigation
← Previous
1
…
28
29
30
31
32
…
60
Next →