[SANS ISC] Infected With a .reg File

I published the following diary on isc.sans.edu: “Infected With a .reg File“: Yesterday, I reported a piece of malware that uses archive.org to fetch its next stage. Today, I spotted another file that is also interesting: A Windows Registry file (with a “.reg” extension). Such files are text files created by exporting values

The post [SANS ISC] Infected With a .reg File appeared first on /dev/random.

Continue reading [SANS ISC] Infected With a .reg File