TreasureHunter : A POS Malware
TreasureHunter is a POS malware first observed in 2014 and which got some recognition through 2016. Most POS malwares are pretty simple and don’t have the advanced capabilities we can find in banking malwares for example. Their main feature is RAM scraping, which consists of looking for PAN and other credit card credentials in running process’ memory. Reversing them is rather quick and a good exercise if you’re new to malware analysis.