Sometimes all the information that we have about a new attack is just a bunch of bytes in the form of a memory dump. In this session, Gerardo Fernandez of VirusTotal will walk through the process from identifying a suspicious sample to unfold the campaign this malware belongs. There are many ways to keep track of fresh malicious activity, but when we don't have much information or we just want to keep a lookout for future events, Threat Intel is the best tool we have to get the whole picture and react accordingly.