216.73.216.233

Technical Analysis of Zloader Updates

· Published 22/09/2025 19:40 · Modified 22/09/2025 21:14

Export JSON

Essential information

Published
22/09/2025 19:40
Modified
22/09/2025 21:14
Tags
2025-09-22 anti-analysis banking dns tunneling evasion ldap obfuscation ransomware trojan websockets zeus zeus-based zloader
Related entities
14 techniques (mitre), 1 malware

Description

Recent versions of , a modular , have introduced significant enhancements to its functionality. These updates include improved techniques, strategies, and network communication methods. The malware now supports and has modified its protocol, replacing TLS encryption with a custom algorithm. New functions have been added to improve network discovery and lateral movement capabilities. continues to evolve its tactics, including checks for process integrity levels to avoid detection in sandbox environments. The malware has also removed its Domain Generation Algorithm and made changes to its static configuration format. These updates demonstrate 's ongoing development as a sophisticated tool for initial access and potential deployment.

External references