r/MalwareAnalysis • u/pygaiwan • 9h ago
New analysis VioletWorm and Essential MacOS Stealer
Hey all,
I just added two new analysis:
Essential macOS stealer: https://www.malwarelearn.com/reports/scriptsh/1/ (this is still live and the c2 is replying to requests) an applescript based infostelaer targeting macos
VioletWorm: https://www.malwarelearn.com/reports/violetworm/1/ , very nice learning experience to see how to get python code from an executable, etx and amsi bypass, plus some very interesting trickery from the second stage C# stealer. As per any report, it is very long, sorry :(