11-29-2025, 04:15 PM
Behavior: Full remote control, keylogger, webcam.
SHA256:
Mitigation:
SHA256:
Code:
6fa81497e0b74f801fbd4cadd8bcf8e0d0ee202c565b43b63cb0fbc927b8c6fa- Block remote C2 connections via Firewall.
- Kill screen-capture behavior detected by EDR.
- AV detects packed variants.
