Blog

Filter: Threat Analysis - Clear Filter

RegPhantom Backdoor Threat Analysis

RegPhantom Backdoor Threat Analysis

Executive Summary This report analyzes RegPhantom, a stealthy Windows kernel rootkit designed to give attackers code execution in kernel mode while leaving very little visible evidence behind. The malware abuses the Windows registry as a covert trigger mechanism: a...

read more