Kaspersky says it detected infections with DarkPulsar, alleged NSA malware October 19, 2018 https://www.zdnet.com/article/kaspe...fections-with-darkpulsar-alleged-nsa-malware/
@itman was all over this thing and those others last summer and made for some super interesting topic discussions on each one that was published/released. I don't think there's enough years in a single human lifetime to learn all the techniques that Windows has made possible courtesy their O/S codes and branches of implementation so far. Seems others were curious enough to experiment with what used to have evasion properties from most if not all AV detections.
Unlike DoublePulsar, DarkPulsar is an implant of Fuzzbunch: https://securelist.com/darkpulsar/88199/ Per the zdnet.com article: I agree ………. much, much higher.
DarkPulsar code located on GitHub here: https://github.com/adamcaudill/EquationGroupLeak/blob/master/windows/implants/Darkpulsar-1.1.0.9.xml
uh oh kaspersky is detecting NSA originated stuff, time to make sure it's even more banned from the US.