Cybercrime, AgentTesla conveyed by a false invoice with sender in Rome
The zip attachment of the message, also arrived in Italy, contains an exe: the malware itself. Stolen data is exfiltrated via SMTP.
Technical analysis by the Malware Hunter JAMESWT Cybercrime, Agent Tesla hidden in a fake payment invoice. The email contains an exe and a zip with the same executable inside. Both are the malware. Data is exfiltered via smtp A payment…