Зарегистрируйтесь сейчас для лучшей персонализированной цитаты!

LodaRAT Update: Alive and Well

Sep, 29, 2020 Hi-network.com

Talos recently identified new versions of Loda RAT, a remote access trojan written in AutoIt. Not only have these versions abandoned their usual obfuscation techniques, several functions have been rewritten and new functionality has been added. In one version, a hex-encoded PowerShell keylogger script has been added, along with a new VB script, only to be removed in a later version. Direct interaction from the threat actor was observed during analysis. Since our blog post on Loda in February 2020, Talos has been continually monitoring Loda RAT for new behavior. Recently there have been several changes that indicate that the authors are learning new techniques to improve the effectiveness of Loda. While these changes are somewhat minor, it shows that the authors are continually developing Loda into a more robust RAT.

Read More >>


tag-icon Горячие метки: Cisco Talos Talos malware Malware Analysis

Copyright © 2014-2024 Hi-Network.com | HAILIAN TECHNOLOGY CO., LIMITED | All Rights Reserved.