Wednesday, August 25, 2021

Quick Malware Analysis: TA551/SHATHAK + URSNIF/GOZI/ISFB pcap from 2021-04-28

Thanks to Brad Duncan for sharing this pcap!

We did a quick analysis of this pcap on the latest version of Security Onion via so-import-pcap:

Here are some of the interesting Suricata alerts, Zeek logs, and session transcripts:

No comments: