Tony Lambert
An educator that does security things
HOME
CATEGORIES
TAGS
ARCHIVES
ABOUT
Home
Tags
process-injection
Tag
Cancel
process-injection
1
HCrypt Injecting BitRAT using PowerShell, HTAs, and .NET
2022-01-23
Recently Updated
njRAT Installed from a MSI
AgentTesla From RTF Exploitation to .NET Tradecraft
XLoader/Formbook Distributed by Encrypted VelvetSweatshop Spreadsheets
Analyzing a Stealer MSI using msitools
Aggah PPAM macros renaming MSHTA
Trending Tags
malware
powershell
windows
agenttesla
ld_preload
mshta
msi
.net
cobalt-strike
emotet
Trending Tags
malware
powershell
windows
agenttesla
ld_preload
mshta
msi
.net
cobalt-strike
emotet