Malware Analysis - Binary Refinery URL extraction of Multi-Layered PoshLoader for LummaStealer

Malware Analysis - Binary Refinery URL extraction of Multi-Layered PoshLoader for LummaStealer

1.981 Lượt nghe
Malware Analysis - Binary Refinery URL extraction of Multi-Layered PoshLoader for LummaStealer
We construct a Binary Refinery pipeline to extract the download URL of a multi-layered loader that uses JScript and PowerShell. Tweet: https://x.com/ShanHolo/status/1879808265607164367 Udemy course: https://www.udemy.com/course/windows-malware-analysis-for-hedgehogs-beginner-training/?couponCode=60EBAE52098A12D428B3 Coupon: 60EBAE52098A12D428B3 Follow me on Twitter: https://twitter.com/struppigel #malware #malwareanalysis #binaryrefinery #binref #powershell #javascript #JScript #lummastealer #loader #poshload #reverseengineering 00:00 Intro 00:30 Layer 1 - JScript 05:30 Layer 2 - JScript 10:38 Layer 3 - PowerShell 11:45 Layer 4 - PowerShell 15:47 Layer 5 - PowerShell Downloader 16:44 Full binref pipeline