Monday, August 30, 2021

Quick Malware Analysis: malware-traffic-analysis.net BazaCall-BazaLoader pcap from 2021-04-16

Thanks to Brad Duncan for sharing this pcap!
https://www.malware-traffic-analysis.net/2021/04/16/index2.html

We did a quick analysis of this pcap on the latest version of Security Onion via so-import-pcap:
https://docs.securityonion.net/en/2.3/so-import-pcap.html

Here are some of the interesting Suricata alerts, Zeek logs, and session transcripts:










No comments:

Search This Blog

Featured Post

CentOS Stream 9 and other Unsupported Network Installations

In 2023, we announced that only official Security Onion images are supported and that network installations on certain Linux distros was pos...

Popular Posts

Blog Archive