Quantcast
Channel: BOT24
Viewing all articles
Browse latest Browse all 8064

An Analysis of PlugX Using Process Dumps from High-Resolution Malware Analysis

$
0
0
Targeted attacks and so-called APTs (advanced persistent threats) come in many forms and colors. Very often, in-house malware analysis teams want to go beyond the detection information offered by traditional analysis systems (which often only says if a program looks malicious or not). The Lastline High-Resolution analysis engine exposes a lot of details describing the malware behavior, such as file-system modifications, changes to the Windows registry, interesting network communication, and it even highlights sophisticated evasion attempts completely automatically.

more here..........http://labs.lastline.com/an-analysis-of-plugx-using-process-dumps-from-high-resolution-malware-analysis

Viewing all articles
Browse latest Browse all 8064

Trending Articles