Feb. 9, 2024, 2:45 p.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

A few months ago, we saw waves of MSIX malicious packages[1] dropping malware once installed on victim’s computers. I started to hunt for such files and saw a big decrease in interesting hints. Today, my YARA rule triggered a new sample. Called “Rabby-Wallet.msix”, the file has a VT score of 8/58[2]


Article Link: https://isc.sans.edu/diary/rss/30636


1 post - 1 participant


Read full topic

big called computers file files hunt malicious malicious packages malware msix obfuscated packages powershell powershell script sample score script today victim wallet yara yara rule

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Network Security Engineer

@ Meta | Menlo Park, CA | Remote, US

Security Engineer, Investigations - i3

@ Meta | Washington, DC

Threat Investigator- Security Analyst

@ Meta | Menlo Park, CA | Seattle, WA | Washington, DC

Security Operations Engineer II

@ Microsoft | Redmond, Washington, United States

Engineering -- Tech Risk -- Global Cyber Defense & Intelligence -- Bug Bounty -- Associate -- Dallas

@ Goldman Sachs | Dallas, Texas, United States