Abdallah Elshinbary
@_n1ghtw0lf
Cyber Security Researcher | CTF Player
ID: 1090656766898159617
https://n1ght-w0lf.github.io 30-01-2019 17:03:31
49 Tweet
1,1K Takipçi
647 Takip Edilen
It's been exactly 3 years since I published a malware deep dive report, now that I have some free time I decided to write a new blog about #GCleaner #Loader. The blog covers string decryption, config extraction, C2 communications among other stuff. n1ght-w0lf.github.io/malware%20anal…
We discovered additional insights complementing the CYFIRMA Research report cyfirma.com/research/qwert… on the 'QWERTY Stealer' sample. Our analysis attributes this sample to the DoNot_Downloader family, which is linked to #APT_C_35, also known as the #DoNotTeam. 1/n