brettsg
@pushecx
ID: 2324073474
02-02-2014 17:18:48
155 Tweet
415 Followers
84 Following
ā ļøMatanbuchus has been continuously making changes to various components to evade AV/ML detection. The group is currently leveraging Microsoft Installer (MSI) files to drop the downloader module with some samples having zero detections: virustotal.com/gui/file/6a139⦠The C2 for this