IronNetInjector

Description

(Palo Alto) IronNetInjector is made of an IronPython script that contains a .NET injector and one or more payloads. The payloads can be also .NET assemblies (x86/64) or native PEs (x86/64). When an IronPython script is run, the .NET injector gets loaded, which in turn injects the payload(s) into its own or a remote process.

Names

Name
IronNetInjector

Category

Malware

Type

  • Loader

Information

Mitre Attack

Malpedia

Other Information

Uuid

db8af4a3-93ac-429e-896d-7fe469e8d1ad

Last Card Change

2023-06-22