TF-MAL-js.proslikefan
📛 Threat Title
Malware family: Proslikefan
Description
ThreatFox malware family `js.proslikefan`. Printable name: Proslikefan.
Indicators of Compromise (0)
No indicators of compromise on this threat.
References (1)
- ThreatFox: IOCs for this family ThreatFox Malwares
Remediations (8)
-
web:github.com
Malicious traffic detection system. Contribute to stamparm/maltrail development by creating an account on GitHub.
-
web:pferrie.epizy.com
The virus uses other size optimizations, such as '!0' to replace 'true' and '!1' to replace 'false', exponent form instead of large numbers (e.g. 36e5 instead of 3600000 to represent one hour), and avoids semicolons as much as possible by using commas instead. The use of commas even extends to the return statement, where the virus places multiple assignment lines prior to the ...
-
web:windowsforum.com
The emergence of RESURGE signals more than just another entry in a long line of malware threats. According to CISA, RESURGE contains advanced persistence features inherited from the SPAWNCHIMERA malware family—a group notorious for its ability to survive system reboots and avoid simplistic remediation .
-
web:www.boozallen.com
Not only does family classification provide immediate insights about the characteristics and behaviors of a malware sample, but it is a core part of the triage, remediation , and attribution efforts. But figuring all this out quickly under pressure is hard.
-
web:www.cisa.gov
It highlights technical approaches to uncovering malicious activity and includes mitigation steps according to best practices. The purpose of this report is to enhance incident response among partners and network administrators along with serving as a playbook for incident investigation.
-
web:www.f-secure.com
Proslikefan attempts to evade detection by checking for and stopping security-related processes. The worm also checks for the presence of antivirus programs, as well as other analysis programs commonly used by malware researchers.
-
web:www.microsoft.com
Worm:JS/ Proslikefan .gen!D is a polymorphic worm that can change your computer settings, block security-related processes and download files. When run, this worm creates hidden folders with a random name in the following locations:
-
web:www.rescana.com
Miasma Supply Chain Attack Compromises Red Hat @redhat-cloud-services npm Packages With Credential-Stealing Worm: Cybersecurity Incident Analysis and Mitigation Executive Summary On June 1, 2026, a critical supply chain attack known as Miasma was identified targeting the @redhat-cloud-services namespace on the npm package registry.
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.