Tony Lambert · @ForensicITGuy
119 followers · 44 posts · Server infosec.exchange

New blog post! In this one I look at a downloader that executes documented by Unit42 and @malware_traffic. Lots of .NET code in this one. forensicitguy.github.io/net-do

#originlogger #malware

Last updated 3 years ago

Brad · @malware_traffic
2094 followers · 84 posts · Server infosec.exchange

I forgot apparently stopped a while back, and one of the new Agent Tesla variants is called .

I wrote a Unit42 tweet about this traffic, now posted at: twitter.com/Unit42_Intel/statu

of the infection traffic, sanitized copy of the email, associated malware, and IOCs are now available at: malware-traffic-analysis.net/2

#agenttesla #originlogger #pcap

Last updated 3 years ago