Security-X

Forum Security-X => News => Discussion démarrée par: igor51 le juin 15, 2016, 01:01:16

Titre: [MMPC]Reverse-engineering DUBNIUM
Posté par: igor51 le juin 15, 2016, 01:01:16
Reverse-engineering DUBNIUM

DUBNIUM (which shares indicators with what Kaspersky researchers have called DarkHotel) is one of the activity groups that has been very active in recent years, and has many distinctive features. We located multiple variants of multiple-stage droppers and payloads in the last few months, and although they are not really packed or obfuscated in a...
Source: Reverse-engineering DUBNIUM (https://blogs.technet.microsoft.com/mmpc/2016/06/09/reverse-engineering-dubnium-2/)