skip to Main Content

Cybercrime, Dridex is back with an invoice-themed campaign

Technical analysis by the Malware Hunter JAMESWT

Dridex is back with an invoice-themed campaign. The xls attachment contacts a random url from an internal list and downloads the dll, which activates the malware infection chain

Dridex is back with a new invoice-themed campaign.

The email xls attachment, if opened, randomly contacts a url from the internal list and downloads the dll, which starts the malware infection chain.

Dridex is a very dangerous banking Trojan used by cybercrime, which has long been the protagonist of campaigns all over the world, especially with a courier theme. The targets are mainly companies, but not only.

The Malware C2

Back To Top