Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add in signature for ATM malware #430

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

kevross33
Copy link
Contributor

@kevross33 kevross33 commented Jul 28, 2018

Create initial signature for ATM malware; I am trying to work out how to to get more dynamic info out of ATM malware with the specific required DLLs. It may be some hooks will be required to truly analyse ATM malware but at first this is initial signature in order to identify importing the necessary DLLs to identify potential ATM samples (dynamic LdrLoadDll I have but I am struggling to get good execution).

Create initial signature for ATM malware; I am trying to work out how to to get more dynamic info out of ATM malware with the specific required DLLs. It may be some hooks will be required to truly analyse ATM malware but at first this is initial signature in order to identify importing the necessary DLLs (dynamic LdrLoadDll I have but I am struggling to get good execution).
@kevross33
Copy link
Contributor Author

SHA256: cc85e8ca86c787a1c031e67242e23f4ef503840739f9cdc7e18a48e4a6773b38

image

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant