Source.
Anybody got more info on the actual payload?
powershell.exe -eC [payload_w_base64] is mentioned here.
powershell.exe -eC [payload_w_base64]
-eC just means encoded command afaik.
-eC
Seen this on the powershell subreddit before, it just downloads and runs another executable.
Deep analysis here https://denwp.com/anatomy-of-a-lumma-stealer
Thanks for sharing.
I also added that website to my RSS reader.
Same
This is a most excellent place for technology news and articles.
Anybody got more info on the actual payload?
powershell.exe -eC [payload_w_base64]
is mentioned here.-eC
just means encoded command afaik.Seen this on the powershell subreddit before, it just downloads and runs another executable.
Deep analysis here https://denwp.com/anatomy-of-a-lumma-stealer
Thanks for sharing.
I also added that website to my RSS reader.
Same