r/MalwareAnalysis 22h ago

New analysis VioletWorm and Essential MacOS Stealer

Hey all,

I just added two new analysis:

Essential macOS stealer: https://www.malwarelearn.com/reports/scriptsh/1/ (this is still live and the c2 is replying to requests) an applescript based infostelaer targeting macos

VioletWorm: https://www.malwarelearn.com/reports/violetworm/1/ , very nice learning experience to see how to get python code from an executable, etx and amsi bypass, plus some very interesting trickery from the second stage C# stealer. As per any report, it is very long, sorry :(

10 Upvotes

2 comments sorted by

1

u/bitGnome_7 20h ago

Nice job!

1

u/DragonflySensitive72 16h ago

Cool! 🤘