Dissecting DarkGate: Modular Malware Delivery and Persistence as a Service
released on 2024-02-29 @ 06:39:17 PM
This report analyzes a phishing PDF that led to the delivery of a signed MSI file containing layered stages designed to avoid detection and deliver the DarkGate malware for persistence and remote access. The analysis covers extracting and decrypting the stages to uncover the final payload.