Virtualization
Bunny loader Malware as a Service (MaaS)
[MITRE ATT&CK] T1564.003 – Hide Artifacts: Hidden Window | [MITRE ATT&CK] T1112: Modify Registry
[MITRE ATT&CK] Defense Evasion – Virtualization/Sandbox Evasion: System Checks [T1497.001]
[MITRE ATT&CK] Command and Control – Application Layer Protocol: Web Protocols [T1071.001] |
MITRE ATT&CK] T1565 – Data Manipulation
[MITRE ATT&CK] Credential Access – Input Capture: Keylogging [T1056.001] |
[MITRE ATT&CK] T1555 – Credentials From Password Stores | [MITRE ATT&CK] Collection – Archive Collected Data [T1560]
IOCs:
[ad_2]
source