Recently we discovered an advanced backdoor sample - VirTool:WinNT/Exforel.A. Unlike traditional backdoor samples, this backdoor is implemented at the NDIS (Network Driver Interface Specification) level.https://blogs.technet.com/b/mmpc/archiv ... ected=true
...
This sample appears to be used for a specific attack targeting a certain organization.
...
http://www.microsoft.com/security/porta ... /Exforel.A
Can somebody provide a sample of this malware?
Malware Reversing
http://www.malware-reversing.com
http://www.malware-reversing.com