Click here to download all references as Bib-File.•

Enter keywords to filter the library entries below or Propose new Entry
2022-05-20 ⋅ VinCSS ⋅ Dang Dinh Phuong, m4n0w4r, Tran Trung Kien
[RE027] China-based APT Mustang Panda might have still continued their attack activities against organizations in Vietnam
PlugX
2022-04-25 ⋅ VinCSS ⋅ m4n0w4r, Tran Trung Kien
[RE026] A Deep Dive into Zloader - the Silent Night
Zloader
2022-03-21 ⋅ VinCSS ⋅ m4n0w4r, Tran Trung Kien
[QuickNote] Analysis of Pandora ransomware
Pandora
2022-02-24 ⋅ kienmanowar Blog ⋅ m4n0w4r, Tran Trung Kien
[QuickNote] Techniques for decrypting BazarLoader strings
BazarBackdoor
2022-01-26 ⋅ VinCSS ⋅ m4n0w4r, Tran Trung Kien
[QuickNote] Analysis of malware suspected to be an APT attack targeting Vietnam
5.t Downloader
2022-01-23 ⋅ kienmanowar Blog ⋅ m4n0w4r, Tran Trung Kien
[QuickNote] Emotet epoch4 & epoch5 tactics
Emotet
2021-11-16 ⋅ Twitter (@kienbigmummy) ⋅ m4n0w4r
Tweet on short analysis of QakBot
QakBot
2021-10-27 ⋅ VinCSS ⋅ m4n0w4r, Tran Trung Kien
[RE025] TrickBot ... many tricks
TrickBot
2021-09-06 ⋅ kienmanowar Blog ⋅ m4n0w4r
Quick analysis CobaltStrike loader and shellcode
Cobalt Strike
2021-08-04 ⋅ kienmanowar Blog ⋅ m4n0w4r, Tran Trung Kien
[QuickNote] MountLocker – Some pseudo-code snippets
Mount Locker
2021-05-24 ⋅ VinCSS ⋅ m4n0w4r, Trương Quốc Ngân
[RE022] Part 1: Quick analysis of malicious sample forging the official dispatch of the Central Inspection Committee
5.t Downloader
2021-05-11 ⋅ kienmanowar Blog ⋅ m4n0w4r
Quick analysis note about DealPly (Adware)
DealPly
2021-03-18 ⋅ VinCSS ⋅ m4n0w4r, Tran Trung Kien
[RE021] Qakbot analysis – Dangerous malware has been around for more than a decade
QakBot
2021-01-13 ⋅ VinCSS ⋅ m4n0w4r, Tran Trung Kien
[RE019] From A to X analyzing some real cases which used recent Emotet samples
Emotet
2020-09-11 ⋅ VinCSS ⋅ m4n0w4r
[RE016] Malware Analysis: ModiLoader
DBatLoader
2020-08-16 ⋅ kienmanowar Blog ⋅ m4n0w4r
Manual Unpacking IcedID Write-up
IcedID
2020-06-27 ⋅ kienmanowar Blog ⋅ m4n0w4r
Quick analysis note about GuLoader (or CloudEyE)
CloudEyE
2020-05-05 ⋅ ⋅ VinCSS ⋅ Dang Dinh Phuong, m4n0w4r
GuLoader AntiVM Techniques
CloudEyE
2020-04-06 ⋅ ⋅ VinCSS ⋅ m4n0w4r, Tran Trung Kien
[RE015] “Heaven’s Gate” An old but effective technique
2020-03-19 ⋅ ⋅ VinCSS ⋅ m4n0w4r
Analysis of malware taking advantage of the Covid-19 epidemic to spread fake "Directive of Prime Minister Nguyen Xuan Phuc" - Part 2
PlugX
2020-03-10 ⋅ ⋅ VinCSS ⋅ m4n0w4r
[RE012] Analysis of malware taking advantage of the Covid-19 epidemic to spread fake "Directive of Prime Minister Nguyen Xuan Phuc" - Part 1
PlugX
2020-01-09 ⋅ ⋅ VinCSS ⋅ m4n0w4r, Tran Trung Kien
Here's what Macro malware is available
2019-12-19 ⋅ ⋅ VinCSS ⋅ m4n0w4r
[RE009] Analysis of malicious code "PLAN, KEY TASKS IN 2020.doc" attached to phishing email
Unidentified 074 (Downloader)
2019-10-08 ⋅ ⋅ m4n0w4r
Một sample nhắm vào Bank ở VN
OceanLotus
2019-06-27 ⋅ ⋅ m4n0w4r
Tốc kí một sample sử dụng CVE_2018_20250 (Target VN)
2019-05-31 ⋅ ⋅ TradaHacking ⋅ m4n0w4r
Thưởng tết….
KerrDown
2019-01-03 ⋅ ⋅ m4n0w4r
Another malicious document with CVE-2017–11882
8.t Dropper
2018-11-03 ⋅ ⋅ m4n0w4r
Là 1937CN hay OceanLotus hay Lazarus …
8.t Dropper