Malware Traffic Analysis Net
2025-05-06: Raspberry Robin activity
4 months 2 weeks ago
2025-04-13: Twelve days of scans and probes and web traffic hitting my web server
4 months 2 weeks ago
2025-04-04: KongTuke activity
4 months 2 weeks ago
2025-03-26: SmartApeSG traffic for fake browser update leads to NetSupport RAT and StealC
5 months ago
2025-03-10: Remcos RAT infection
5 months 2 weeks ago
2025-03-03: Three days of scans and probes and web traffic hitting my web server
5 months 2 weeks ago
2025-02-18: SmartApeSG script for fake browser update leads to NetSupport RAT and StealC
6 months 1 week ago
2025-02-13: Quick post: ClickFix style infection for Lumma Stealer
6 months 2 weeks ago
2025-02-10: StrelaStealer infection
6 months 2 weeks ago
2025-02-07: Three days of scans and probes and web traffic hitting my web server
6 months 3 weeks ago
2025-01-31: Two pcaps of AgentTesla-style data exfil, one using FTP and one using SMTP
6 months 4 weeks ago
2025-01-30: XLoader infection
6 months 4 weeks ago
2025-01-28: Malware infection from web inject activity
7 months ago
2025-01-23: Fake installer leads to Koi Loader/Koi Stealer
7 months ago
2025-01-22: Traffic Analysis Exercise - Download from fake software site
7 months ago
2025-01-21: Quick post for Koi Loader/Koi Stealer activity
7 months ago
2025-01-13: KongTuke campaign leads to infection abusing BOINC platform
7 months 2 weeks ago
2025-01-09: CVE-2017-0199 XLS --> HTA --> VBS --> steganography --> DBatLoader/GuiLoader style malware
7 months 2 weeks ago
2025-01-04: Four days of scans and probes and web traffic hitting my web server
7 months 3 weeks ago
Checked
1 hour 7 minutes ago
A malware traffic analysis blog
Malware Traffic Analysis Net feed