Welcome back to our Triage Thursday™ blog series! We’re excited to share this week’s detection updates with you. In these quick posts, we highlight the latest malware families detections that have been added.
New Windows Families This Week
- Added extraction support for AnimateClipper
- AnimateClipper sample:
- Added extraction support for Moonrise aka GrobRat family, Windows RAT
- Moonrise sample:
- Added detection for TokyoCore, Windows ransomware
- TokyoCore sample:
- Added detection for OxideStealer, Windows stealer (Rust)
- OxideStealer sample:
- Added detection for CraftriseStealer, Windows stealer
- CraftriseStealer sample:
- Added detection for TinyRCT, Windows backdoor
- TinyRCT sample:
Detection for Android
- Added detection for Medusa, Android banking trojan
- Medusa sample:
- Added detection for VINETHORN, Android spyware
- VINETHORN sample:
- Added detection for PINEFLOWER, Android spyware
- PINEFLOWER sample:
Detection for APT Groups
- Added detection for LONGLEASH backdoor, APT UAT-7810
- LONGLEASH sample:
- Added detection for DOGLEASH backdoor (ARM and MIPS variants), APT UAT-7810
- DOGLEASH samples:
Updates for Existing Families
- Updated detection and extraction for StealC v3.x x86 variant
- StealC sample:
- Updated detection and extractor for EvolutionStealer
- EvolutionStealer sample:
If you have any feedback, questions, or issues about Triage™ feel free to reach out to us any time - we do our best to respond to all feedback but even if we can’t get back to you straight away your files will go into our list of things to review and help us prioritize tasks.
You can find us directly through the website, or using the Feedback option on an analysis report page.
Not signed up yet? Head over to tria.ge to register for a free account.