Cracking Locky’s New Anti-Sandbox Technique
The last few weeks saw new variants of the Locky ransomware that employs a new anti-sandbox technique. In these new variants, Locky’s loader code uses a seed parameter from its JavaScript downloader in order to decrypt embedded malicious code and execute it properly.
Threat Intel
via CERT-EU : EMM AlertFilter System: CERT-LatestNews http://ift.tt/1gYYfLb
June 30, 2016 at 03:06PM
Leave a comment