FYAnti — Malware Profile
FYAnti is a loader that has been used by menuPass since at least 2020, including to deploy QuasarRAT.
MITRE ATT&CK techniques (4)
- T1027.002 Software Packing
- T1083 File and Directory Discovery
- T1105 Ingress Tool Transfer
- T1140 Deobfuscate/Decode Files or Information