Live Stream VOD: Matanbuchus Triage - Part 1 (Patreon)
Published:
2022-06-24 03:03:30
Imported:
2022-12
Content
In this twitch stream we begin our triage of the Matanbuchus loader malware. First, we resolve the API hashes, and decrypt the strings, then we attempt to build a Yara rule and and automated config extractor.
Stream Bookmarks
- 00:31:00 We conclude our research and begin reverse engineering.
- 01:09:00 We start using Dumpulator and run into some issues.
- 03:55:00 Duncan shows up and give us some code for Dumpulator and we finish our string extraction.
Sample
f8cc2cf36e193774f13c9c5f23ab777496dcd7ca588f4f73b45a7a5ffa96145e
Notes