rfzo.rs spread advance malware?
#3
Naidjem na novi sandbox analyzer i dobih vise info:
https://tria.ge/221204-yhv4qaae67

i pritom proogoglah za WerFaulte.exe kako se zloupotrebljava u malware izdanjima i naidjem na:
https://resources.infosecinstitute.com/t...lkthrough/

WerFaulte.exe pokrece HCreader.exe i skida file u ram, cime izbegava detekciju... a sam file koji skida nisam u mogcunosti da analiziram sa dmp analyzerima Confused
Reply


Messages In This Thread
rfzo.rs spread advance malware? - by y0d4 - 09-17-2022, 06:24 PM
RE: rfzo.rs spread advance malware? - by 1van - 09-18-2022, 06:30 PM
RE: rfzo.rs spread advance malware? - by y0d4 - 12-04-2022, 08:36 PM
RE: rfzo.rs spread advance malware? - by y0d4 - 12-04-2022, 10:18 PM
RE: rfzo.rs spread advance malware? - by 1van - 12-15-2023, 08:22 PM
RE: rfzo.rs spread advance malware? - by SonjaS - 02-11-2024, 11:53 PM
RE: rfzo.rs spread advance malware? - by VincaSec - 02-12-2024, 12:23 AM

Forum Jump:


Users browsing this thread: 1 Guest(s)