Malware Analysis Video: C2 extractor for Turla's Kopiluwak using Binary Refinery

struppigel

Moderator
Thread author
Verified
Staff Member
Well-known
Apr 9, 2020
656
Hi there. I made a video that is suitable to train malware analysis if you are still at the beginning of your journey but know some basics.

The sample is an APT backdoor named Kopiluwak. It belongs to the threat actor Turla. It has 3 layers, the first is an office document, the second and third are JScript files.

In this video we analyse those layers, deobfuscate them and finally put everything together for a binary refinery C2 extractor.

 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top