Click here to download all references as Bib-File.•
2024-09-26
⋅
Gdata
⋅
BBTok Targeting Brazil: Deobfuscating the .NET Loader with dnlib and PowerShell BBtok |
2024-06-12
⋅
Gdata
⋅
New backdoor BadSpace delivered by high-ranking infected websites WarmCookie |
2023-12-09
⋅
Github (struppigel)
⋅
AST based GootLoader unpacker, C2 extractor and deobfuscator GootLoader |
2023-08-19
⋅
Youtube (MalwareAnalysisForHedgehogs)
⋅
Malware Analysis - Agniane Stealer, Native Stub to .NET Unpacking Cinoshi |
2023-04-26
⋅
Youtube (MalwareAnalysisForHedgehogs)
⋅
Malware Theory - Packer identifiers don"t tell you if a file is packed |
2023-04-03
⋅
Youtube (MalwareAnalysisForHedgehogs)
⋅
Malware Analysis - 3CX SmoothOperator ffmpeg.dll with Binary Ninja 3CX Backdoor |
2022-11-25
⋅
Github (struppigel)
⋅
Python script to decode NightHawk strings Nighthawk |
2022-09-05
⋅
Icarus Stealer Icarus |
2022-04-21
⋅
Gdata
⋅
Criminals provide Ginzo stealer for free, now it is gaining traction Ginzo Stealer ZingoStealer |
2022-03-24
⋅
Twitter (@struppigel)
⋅
Tweet on Ginzo Stealer Ginzo Stealer |
2022-03-09
⋅
Twitter (@struppigel)
⋅
Tweets detailing NominatusToxicBattery NominatusToxicBattery |
2022-03-08
⋅
Twitter (@struppigel)
⋅
Tweet on KazyLoader KazyLoader |
2022-02-28
⋅
Twitter (@struppigel)
⋅
Tweet on Gofing discovery Gofing |
2022-02-14
⋅
Gdata
⋅
Allcome clipbanker is a newcomer in underground forums AllcomeClipper |
2022-02-03
⋅
Gdata
⋅
QR codes on Twitter deliver malicious Chrome extension Choziosi |
2022-01-19
⋅
Gdata
⋅
Malware vaccines can prevent pandemics, yet are rarely used Emotet STOP |
2021-09-30
⋅
G Data
⋅
All your hashes are belong to us: An overview of malware hashing algorithms |
2021-06-25
⋅
Gdata
⋅
Microsoft signed a malicious Netfilter rootkit NetfilterRootkit |
2021-06-17
⋅
struppigel
⋅
Tweet on Network filter rootkit driver signed by Microsoft |
2021-06-08
⋅
Gdata
⋅
Picture this: Malware Hides in Steam Profile Images SteamHide |