04_cmd_loop_EXARAMELvsINDUSTROYER_watermark

04_cmd_loop_EXARAMELvsINDUSTROYER_watermark

Figure 4. Comparison between decompiled code of the Win32/Exaramel backdoor (on the left) and the Win32/Industroyer backdoor (on the right)