I published the following diary on isc.sans.org: “Nicely Obfuscated JavaScript Sample“.
One of our readers sent us an interesting sample that was captured by his anti-spam. The suspicious email had an HTML file attached to it. By having a look at the file manually, it is heavily obfuscated and the payload is encoded in a unique variable… [Read more]
2 comments