Click here to download all references as Bib-File.•
2022-02-24
⋅
kienmanowar Blog
⋅
[QuickNote] Techniques for decrypting BazarLoader strings BazarBackdoor |
2022-01-26
⋅
VinCSS
⋅
[QuickNote] Analysis of malware suspected to be an APT attack targeting Vietnam 5.t Downloader |
2022-01-23
⋅
kienmanowar Blog
⋅
[QuickNote] Emotet epoch4 & epoch5 tactics Emotet |
2021-11-16
⋅
Twitter (@kienbigmummy)
⋅
Tweet on short analysis of QakBot QakBot |
2021-10-27
⋅
VinCSS
⋅
[RE025] TrickBot ... many tricks TrickBot |
2021-09-06
⋅
kienmanowar Blog
⋅
Quick analysis CobaltStrike loader and shellcode Cobalt Strike |
2021-08-04
⋅
kienmanowar Blog
⋅
[QuickNote] MountLocker – Some pseudo-code snippets Mount Locker |
2021-05-24
⋅
VinCSS
⋅
[RE022] Part 1: Quick analysis of malicious sample forging the official dispatch of the Central Inspection Committee 5.t Downloader |
2021-05-11
⋅
kienmanowar Blog
⋅
Quick analysis note about DealPly (Adware) DealPly |
2021-03-18
⋅
VinCSS
⋅
[RE021] Qakbot analysis – Dangerous malware has been around for more than a decade QakBot |
2021-01-13
⋅
VinCSS
⋅
[RE019] From A to X analyzing some real cases which used recent Emotet samples Emotet |
2020-09-11
⋅
VinCSS
⋅
[RE016] Malware Analysis: ModiLoader DBatLoader |
2020-08-16
⋅
kienmanowar Blog
⋅
Manual Unpacking IcedID Write-up IcedID |
2020-06-27
⋅
kienmanowar Blog
⋅
Quick analysis note about GuLoader (or CloudEyE) CloudEyE |
2020-05-05
⋅
⋅
VinCSS
⋅
GuLoader AntiVM Techniques CloudEyE |
2020-04-06
⋅
⋅
VinCSS
⋅
[RE015] “Heaven’s Gate” An old but effective technique |
2020-03-19
⋅
⋅
VinCSS
⋅
Analysis of malware taking advantage of the Covid-19 epidemic to spread fake "Directive of Prime Minister Nguyen Xuan Phuc" - Part 2 PlugX |
2020-03-10
⋅
⋅
VinCSS
⋅
[RE012] Analysis of malware taking advantage of the Covid-19 epidemic to spread fake "Directive of Prime Minister Nguyen Xuan Phuc" - Part 1 PlugX |
2020-01-09
⋅
⋅
VinCSS
⋅
Here's what Macro malware is available |
2019-12-19
⋅
⋅
VinCSS
⋅
[RE009] Analysis of malicious code "PLAN, KEY TASKS IN 2020.doc" attached to phishing email Unidentified 074 (Downloader) |
2019-10-08
⋅
⋅
Một sample nhắm vào Bank ở VN OceanLotus |
2019-06-27
⋅
⋅
Tốc kí một sample sử dụng CVE_2018_20250 (Target VN) |
2019-05-31
⋅
⋅
TradaHacking
⋅
Thưởng tết…. KerrDown |
2019-01-03
⋅
⋅
Another malicious document with CVE-2017–11882 8.t Dropper |
2018-11-03
⋅
⋅
Là 1937CN hay OceanLotus hay Lazarus … 8.t Dropper |