A Different Take on Keystroke Logging

On March 29th a file was uploaded to VirusTotal containing a fake Microsoft Update Authenticode certificate. Soon thereafter, RSA Research investigated the sample based on certain artifacts that matched those present on Shell_Crew malware RSA Research previously reported on. This Windows DLL file was compiled on October 28th, 2014 at 06:35:47 GMT (Table 1). File...

14 Apr 2017 ... This Windows DLL file was compiled on October 28th, 2014 at ... Facebook; LinkedIn; Twitter ... The malware and the keylogger DLLs communicate via this named pipe. The malware does not load these DLLs in the service DLL address ... Register for RSA Conference · Community · Find a partner · Support ...

Lee mas