Blog
Kazuar's API Access Lets Trojan Run Commands on Compromised Systems
By David Bisson on Thu, 05/04/2017
A backdoor espionage trojan known as Kazuar has API access that it can leverage to run commands on the systems it compromises. The malware, which is written in Microsoft's .NET Framework and uses the ConfuserEX open source packer, initializes by gathering system and malware information and using those items to generate a mutex. It then creates a...