Threat Research

    Detects the creation of a scheduled task associated with the Kapeka backdoor by analyzing attributes like file paths, command-line flags, and other indicators....
    Identifies the Kapeka Backdoor binary being loaded by rundll32.exe. The Kapeka loader deploys a backdoor disguised as a Microsoft Word Add-In, using a DLL file with a '.wll' extension....
    Looking for Something?
    Threat Research Categories:
    Tags