Avast WEBforum

Other => Viruses and worms => Topic started by: polonus on June 13, 2023, 11:07:34 AM

Title: This RTF-exploit malware being detected?
Post by: polonus on June 13, 2023, 11:07:34 AM
See: https://www.joesandbox.com/analysis/884007/0/html

Also see: https://urlhaus.abuse.ch/url/2658925/

31 vendors to detect: https://www.virustotal.com/gui/file/87d74e18791260ee59c94b4c2a095c70695a70013983439d0d899ff3aff88e9d?nocache=1

polonus
Title: Re: This RTF-exploit malware being detected?
Post by: polonus on June 13, 2023, 02:47:29 PM
This is the most wanted av-evading malcode:
https://blog.checkpoint.com/security/may-2023s-most-wanted-malware-new-version-of-guloader-delivers-encrypted-cloud-based-payloads/

Read: https://any.run/cybersecurity-blog/deobfuscating-guloader/
and here: https://www.malware-traffic-analysis.net/2023/06/09/index.html

polonus