skip to Main Content

Cybercrime, SnakeKeylogger spreads via fake Oxfam RFQ

Technical analysis by the Malware Hunter JAMESWT

Cybercrime, SnakeKeylogger spreads via fake Oxfam RFQ. The email Gz attachment contains an exe file: the malware itself. Stolen data is exfiltrated via smtp

A false Request For Quotation (RFQ) from Oxfam conveys a new SnakeKeylogger campaign.

The email Gz attachment contains an exe file, the malware itself. This, if open, activates the infection chain. The cybercrime’s goal is to steal sensitive data from victims, which are then exfiltrated via smtp.

SnakeKeylogger, in fact, is an info stealer capable of acquiring information through various methods.

 

Back To Top