Internet Storm Center
Sign In
Sign Up
Watch ISC TV. Great for NOCs, SOCs and Living Rooms:
https://isctv.sans.edu
Handler on Duty:
Jesse La Grew
Threat Level:
green
Date
Author
Title
MCAFEE DLL
2010-12-01
Deborah Hale
McAfee Security Bulletin Released
MCAFEE
2022-11-19/a>
Guy Bruneau
McAfee Fake Antivirus Phishing Campaign is Back!
2022-01-03/a>
Xavier Mertens
McAfee Phishing Campaign with a Nice Fake Scan
2012-12-03/a>
John Bambenek
John McAfee Exposes His Location in Photo About His Being on Run
2012-04-16/a>
Mark Baggett
McAfee DAT troubles
2010-12-01/a>
Deborah Hale
McAfee Security Bulletin Released
2010-04-22/a>
Deborah Hale
How McAfee turned a Disaster Exercise Into a REAL Learning Experience for Our Community Disaster Team
2010-04-21/a>
Guy Bruneau
McAfee DAT 5958 Update Issues
DLL
2022-11-04/a>
Xavier Mertens
Remcos Downloader with Unicode Obfuscation
2022-08-24/a>
Brad Duncan
Monster Libra (TA551/Shathak) --> IcedID (Bokbot) --> Cobalt Strike & DarkVNC
2022-07-07/a>
Brad Duncan
Emotet infection with Cobalt Strike
2022-04-06/a>
Brad Duncan
Windows MetaStealer Malware
2022-01-21/a>
Xavier Mertens
Obscure Wininet.dll Feature?
2021-12-22/a>
Brad Duncan
December 2021 Forensic Contest: Answers and Analysis
2021-12-02/a>
Brad Duncan
TA551 (Shathak) pushes IcedID (Bokbot)
2021-11-19/a>
Xavier Mertens
Downloader Disguised as Excel Add-In (XLL)
2021-11-16/a>
Brad Duncan
Emotet Returns
2021-10-21/a>
Brad Duncan
"Stolen Images Evidence" campaign pushes Sliver-based malware
2021-09-08/a>
Brad Duncan
"Stolen Images Evidence" Campaign Continues Pushing BazarLoader Malware
2021-07-06/a>
Xavier Mertens
Python DLL Injection Check
2021-06-04/a>
Xavier Mertens
Russian Dolls VBS Obfuscation
2021-05-21/a>
Xavier Mertens
Locking Kernel32.dll As Anti-Debugging Technique
2021-05-18/a>
Xavier Mertens
From RunDLL32 to JavaScript then PowerShell
2021-03-31/a>
Xavier Mertens
Quick Analysis of a Modular InfoStealer
2021-03-03/a>
Brad Duncan
Qakbot infection with Cobalt Strike
2021-02-17/a>
Brad Duncan
Malspam pushing Trickbot gtag rob13
2021-02-11/a>
Jan Kopriva
Agent Tesla hidden in a historical anti-malware tool
2021-01-26/a>
Brad Duncan
TA551 (Shathak) Word docs push Qakbot (Qbot)
2021-01-20/a>
Brad Duncan
Qakbot activity resumes after holiday break
2020-09-10/a>
Brad Duncan
Recent Dridex activity
2020-08-28/a>
Xavier Mertens
Example of Malicious DLL Injected in PowerShell
2020-06-10/a>
Brad Duncan
Job application-themed malspam pushes ZLoader
2020-05-13/a>
Brad Duncan
Malspam with links to zip archives pushes Dridex malware
2020-04-08/a>
Brad Duncan
German malspam pushes ZLoader malware
2020-03-25/a>
Brad Duncan
Recent Dridex activity
2018-11-06/a>
Xavier Mertens
Malicious Powershell Script Dissection
2018-08-21/a>
Xavier Mertens
Malicious DLL Loaded Through AutoIT
2016-06-03/a>
Tom Liston
MySQL is YourSQL
2015-09-29/a>
Pedro Bueno
Tricks for DLL analysis
2013-11-09/a>
Guy Bruneau
IE Zero-Day Vulnerability Exploiting msvcrt.dll
2010-12-01/a>
Deborah Hale
McAfee Security Bulletin Released
2010-08-23/a>
Bojan Zdrnja
DLL hijacking vulnerabilities
2010-08-05/a>
Manuel Humberto Santander Pelaez
Adobe Acrobat Font Parsing Integer Overflow Vulnerability
2006-09-19/a>
Swa Frantzen
Yet another MSIE 0-day: VML
Homepage
Diaries
Podcasts
Jobs
Data
TCP/UDP Port Activity
Port Trends
SSH/Telnet Scanning Activity
Weblogs
Threat Feeds Activity
Threat Feeds Map
Useful InfoSec Links
Presentations & Papers
Research Papers
API
Tools
DShield Sensor
DNS Looking Glass
Honeypot (RPi/AWS)
InfoSec Glossary
Forums
Auditing
Diary Discussions
Forensics
General Discussions
Industry News
Network Security
Penetration Testing
Software Security
Contact Us
Contact Us
About Us
Handlers
Slack Channel
Mastodon
Twitter
Make the web a better place by
sharing the SANS Internet Storm Center
with others