Source |
Malwarebytes Labs |
Identifiant |
1095040 |
Date de publication |
2019-04-19 18:37:05 (vue: 2019-04-19 21:02:09) |
Titre |
Funky malware format found in Ocean Lotus sample |
Texte |
Recently, one of our researchers presented at the SAS conference on "Funky malware formats"-atypical executable formats used by malware that are only loaded by proprietary loaders. In this post, we analyze one of those formats in a sample called Ocean Lotus from the APT 32 threat group in Vietnam.
Categories:
Malware
Threat analysis
Tags: APT 32atypical malware formatsBLOBCABcustom formatmalware formatocean lotusVietnam
(Read more...)
|
Notes |
|
Envoyé |
Oui |
Condensat |
32atypical analysis analyze appeared apt are atypical called categories: conference executable first format formatmalware formatocean formats formatsblobcabcustom found from funky group labs loaded loaders lotus lotusvietnam malware malwarebytes more ocean one only post presented proprietary read recently researchers sample sas tags: those threat used vietnam |
Tags |
Malware
Threat
|
Stories |
APT 32
|
Move |
|