Skip to content

tsrvinnie@gmail.com

Threat Analysis

Threat Analysis

vcodispot.com

Menu

  • Home
  • Diary’s
  • Professional
    • Resume
    • Certifications
  • Contact
  • Linkedin
  • About

    Emotet

    Emotet Makes Its Way to the Domain Controller

    Emotet Makes Its Way to the Domain Controller

    I decided to re-visit the Emotet analysis after receiving some indications that the infection had made its way to my labs Domain Controller.

    vince August 19, 2020August 19, 2020 Emotet, Lateral Movement, Persistence Read more

    Emotet Analysis – The Revival

    Emotet Analysis – The Revival
    vince July 30, 2020August 1, 2020 Emotet, MalDoc, Obfuscation, QakBot Read more

    Emotet VBA Analysis

    Emotet VBA Analysis

    Analysis of malicious VBA code from Emotet Maldoc containing PowerShell downloader.

    vince March 1, 2020March 2, 2020 Emotet, Macro, PowerShell Downloader Read more

    Emotet Malware PowerShell Obfuscation & Evasion Review

    Emotet Malware PowerShell Obfuscation & Evasion Review

    Review of recent Emotet Maldoc obfuscation & evasion techniques

    vince January 18, 2019March 2, 2020 Emotet, Macro, MalDoc, Malware, PowerShell Downloader Read more

    Emotet Malware Delivery Botnet

    Emotet Malware Delivery Botnet

    The Emotet Malware Delivery Botnet is utilizing a combination of obfuscated VBA scripts, macros, and powershell instructions to evade antivirus defenses while relying on social engineering in order to successfully exploit target systems as user intervention is mandatory in the

    vince November 17, 2018March 1, 2020 Emotet, Macro, MalDoc, PowerShell Downloader Read more

    Geo-IP & System Info.

    Diary’s

    • Template Injection Vector Maldoc Analysis
    • Venmo Phishing Deploying Keylogger via Discord’s CDN
    • Emotet Makes Its Way to the Domain Controller
    • Emotet Analysis – The Revival
    • Zloader Infection Analysis
    • Maze Ransomware Analysis
    • Malicious RTF File Exploiting Equation Editor (CVE-2017-11882) Pushing Agent Tesla Malware
    • Extracting Encrypted KPOT Malware Pushed via COVID-19 Malspam
    • XSS JavaScript with Anti-Analysis Technique
    • Corrupted UPX Packed ELF Repair

    vcodispot.com | Threat Analysis Copyright ©2021