Oh and someone within the #VirusTotal community flagged their latest Windows version as #RedLineStealer.

#RomVault appears to be a quite "interesting" piece of software...

#infosec #Myrient #Archiving

Anyone looked at RomVault already? I uploaded the linux version of it to #VirusTotal and even though it doesn't get detected as malicious by any scanner the behavioural section makes me a bit suspicious.

Why would a tool like that try to detect if it is ran in a VM, have references to cryptocurrency (Dash), as well as having anti-debug, and obfuscation characteristics.

Is that VirusTotal flagging unreliable or wtf are they doing there?

#RomVault #infosec #itsecurity