Skip to content

Malware

Blister

aka COLORFAKE

Elastic observed this loader coming with valid code signatures, being used to deploy secondary payloads in-memory.

Blister, also known as COLORFAKE, is a Windows malware family.

Background

According to Elastic, this loader arrives bearing valid code signatures and serves to deliver secondary payloads in-memory.


Source: Malpedia (Fraunhofer FKIE).