PLAYFULGHOST backdoor supports multiple information stealing features
Security Affairs
JANUARY 5, 2025
The PLAYFULGHOST backdoor shares functionality with Gh0stRAT whose source code was publicly released in 2008. TIM.exe then loads a malicious launcher DLL libcurl.dll whichwilldecrypt and load the PLAYFULGHOST payload from an encrypted file named Debug.log.”
Let's personalize your content