Click here to download all references as Bib-File.

Enter keywords to filter the library entries below or Propose new Entry
2020-06-04BitdefenderJanos Gergo Szeles, Ruben Andrei Condor
Loading DLLs for illicit profit. A story about a Metamorfo distribution campaign
Metamorfo
2020-06-02MorphisecArnold Osipov
Ursnif/Gozi Delivery - Excel Macro 4.0 Utilization Uptick & OCR Bypass
ISFB
2020-05-28CybereasonAssaf Dahan, Eli Salem, Lior Rochberger
Valak: More than Meets the Eye
Valak
2020-05-28Twitter (@Andrew___Morris)Andrew Morris
Tweet on Sandworm threat actor exploiting CVE-2019-10149
2020-05-21ArmorbloxChetan Anand
Blox Tales #6: Subpoena-Themed Phishing With CAPTCHA Redirect
2020-05-14tccontre Blogtcontre
Netwalker Ransomware: [API Call Obfuscation (using Structure) and Evading Memory Forensic]
Mailto
2020-05-11SecurityIntelligenceLimor Kessem, Nir Shwarts
Zeus Sphinx Back in Business: Some Core Modifications Arise
Zeus Sphinx
2020-05-07paloalto LIVEcommunityMohammed Yasin
How to stop MortiAgent Malware using the snort rule?
MoriAgent
2020-05-06Twitter (@moranned)Ned Moran
Tweet on side effects of Doxing in the context OilRig
2020-04-29Twitter (@h4ckak)Ring4sky
More IOCs related to PhantomLance
PhantomLance
2020-04-22Github (jstrosch)Josh Stroschein
Gomorrah stealer (.NET binary)
Gomorrah stealer
2020-04-02MorphisecArnold Osipov
GuLoader: The RAT Downloader
CloudEyE
2020-03-30IBMAmir Gandler, Limor Kessem
Zeus Sphinx Trojan Awakens Amidst Coronavirus Spam Frenzy
Zeus OpenSSL Zloader
2020-03-24Bleeping ComputerLawrence Abrams
Three More Ransomware Families Create Sites to Leak Stolen Data
Clop DoppelPaymer Maze Nefilim Nemty REvil
2020-03-23MicrosoftMicrosoft Defender ATP Research Team
Latest Astaroth living-off-the-land attacks are even more invisible but not less observable
Astaroth
2020-03-20BitdefenderLiviu Arsene
5 Times More Coronavirus-themed Malware Reports during March
ostap HawkEye Keylogger Koadic Loki Password Stealer (PWS) Nanocore RAT Remcos
2020-03-18MorphisecArnold Osipov
Parallax: The new RAT on the block
Parallax RAT
2020-02-28MorphisecMichael Gorelik
Trickbot Delivery Method Gets a New Upgrade Focusing on Windows 10
TrickBot
2020-02-11Github (jeFF0Falltrades)Jeff Archer
Metamorfo (aka Casbaneiro)
Metamorfo Unidentified 072 (Metamorfo Loader)
2020-02-10BitdefenderMichael Rosen
Hypervisor Introspection Thwarts Web Memory Corruption Attack in the Wild
coldbrew