Cybercrime, false Freightquote invoice conveys DridexThe email xlsm attachment, if opened, contacts a random link from an internal list and… Cybercrime, false Freightquote invoice conveys Dridex10 March 2021Francesco BussolettiDefence and Security, Restricted Area The email xlsm attachment, if opened, contacts a random link from an internal list and downloads the dll, which starts the malware infection.
Cybercrime, The stolen object from a real email conversation conveys LokibotThe email zip attachment contains an exe, the malware itself. If opened, the infection starts.… Cybercrime, The stolen object from a real email conversation conveys Lokibot10 March 2021Francesco BussolettiDefence and Security, Restricted Area The email zip attachment contains an exe, the malware itself. If opened, the infection starts. Objective: to steal information from victims.
Cybercrime, the change of telephone operator bait for Ursnif / Gozi in ItalyThe doc attachment of a fake Vodafone email, different for each message, contacts a single… Cybercrime, the change of telephone operator bait for Ursnif / Gozi in Italy2 March 2021Francesco BussolettiDefence and Security, Restricted Area The doc attachment of a fake Vodafone email, different for each message, contacts a single link and downloads the dll which starts malware infection.
Cybercrime, PKV Trading ApS company certificates exploited by QuakbotNew signed campaign to trick victims’ antivirus, allowing them to download and install the malware… Cybercrime, PKV Trading ApS company certificates exploited by Quakbot22 February 2021Francesco BussolettiDefence and Security, Restricted Area New signed campaign to trick victims’ antivirus, allowing them to download and install the malware via attachment.
Cybercrime, Dridex conveyed by false MSC invoicesThe xlsm attachment contacts a random link from an internal list and downloads the malware,… Cybercrime, Dridex conveyed by false MSC invoices18 February 2021Francesco BussolettiDefence and Security, Restricted Area The xlsm attachment contacts a random link from an internal list and downloads the malware, a Trojan protagonist of campaigns especially with a courier theme.
Cybercrime, Quakbot exploits ADV TOURS d.o.o.” company certificatesNew signed campaign to allow victims to download and install the malware via the attachment,… Cybercrime, Quakbot exploits ADV TOURS d.o.o.” company certificates18 February 2021Francesco BussolettiCyber, Defence and Security New signed campaign to allow victims to download and install the malware via the attachment, tricking the antivirus.
Cybercrime, Quakbot attacks via PROTIP d.o.o. – v stečaju certificatesNew signed campaign to allow victims to download and install the malware via attachment, tricking… Cybercrime, Quakbot attacks via PROTIP d.o.o. – v stečaju certificates11 February 2021Francesco BussolettiDefence and Security, Restricted Area New signed campaign to allow victims to download and install the malware via attachment, tricking the antivirus.
Cybercrime, the invoice-themed Dridex campaign is backThe xlsm attachment, distributed by the Cutwail botnet, contacts a random link from internal list… Cybercrime, the invoice-themed Dridex campaign is back10 February 2021Francesco BussolettiDefence and Security, Restricted Area The xlsm attachment, distributed by the Cutwail botnet, contacts a random link from internal list and downloads the malware.
Cybercrime, Tecno trade d.o.o company certificates exploited by QuakbotNew signed campaign to trick victims’ antivirus, allowing them to download and install the malware… Cybercrime, Tecno trade d.o.o company certificates exploited by Quakbot10 February 2021Francesco BussolettiDefence and Security, Restricted Area New signed campaign to trick victims’ antivirus, allowing them to download and install the malware via attachment.
Cybercrime, C.H. Robinson decoy of the courier-themed Dridex campaignThe xlsm attachment, distributed by the Cutwail botnet, contacts a random link from an internal… Cybercrime, C.H. Robinson decoy of the courier-themed Dridex campaign8 February 2021Francesco BussolettiDefence and Security, Restricted Area The xlsm attachment, distributed by the Cutwail botnet, contacts a random link from an internal list and downloads the malware.