(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
Related Posts
Video: Maldoc: non-ASCII VBA Identifiers, (Sun, Jul 24th)
I recorded a video where I explain how to use my oledump plugin plugin_vba_dco.py to…
0
Malspam pushes ModiLoader (DBatLoader) infection for Remcos RAT, (Tue, May 30th)
Introduction Also known as DBatLoader, ModiLoader is malware that retreives and runs payloads like Formbook,…
0
Shipping to Elasticsearch Microsoft DNS Logs, (Sat, Sep 11th)
This parser takes the logs from a Windows 2012R2 and/or 2019 server (C:DNSLogswindns.log) and parses…
0