#share2steem careful with these #Emotet killchain, plugins and payloads. Nasty! 🕵️♂️
@SophosLabs
Several of our researchers track various aspects of the #Emotet killchain, plugins, and payloads. The infection process can be boiled down to “run several obfuscated command lines until it invokes a PowerShell command that downloads an Emotet executable.”
Posted from Twitter via Share2Steem