Virus Bulletin(@virusbtn) 's Twitter Profile Photo

Trustwave's Karla Agregado observed a malspam campaign targeting the Latin American region. The malspam email contains a ZIP file attachment that, when extracted, reveals an HTML file that leads to a malicious file download posing as an invoice. trustwave.com/en-us/resource…

Trustwave's Karla Agregado observed a malspam campaign targeting the Latin American region. The malspam email contains a ZIP file attachment that, when extracted, reveals an HTML file that leads to a malicious file download posing as an invoice. trustwave.com/en-us/resource…
account_circle
moto_sato(@58_158_177_102) 's Twitter Profile Photo

日本語マルウェアメールの接到を確認しています。
in Japanese
件名 : Re: 支払い請求書
MD5 : ecd0fb1bd2d4019eae997d5297996db3
C2 : mail[.]acom[.]co[.]th (smtp)
Sample : virustotal.com/gui/file/8b213… (20/72)
tria.ge/240408-jywmvsc…

日本語マルウェアメールの接到を確認しています。
#malspam in Japanese #agenttesla
件名 : Re: 支払い請求書
MD5 : ecd0fb1bd2d4019eae997d5297996db3
C2 : mail[.]acom[.]co[.]th (smtp)
Sample : virustotal.com/gui/file/8b213… (20/72)
tria.ge/240408-jywmvsc…
account_circle
moto_sato(@58_158_177_102) 's Twitter Profile Photo

日本語マルウェアメールの接到を確認しています。 in Japanese ?

件名 : 対内支払いに関する BBL アドバイス BC I650210-000 (2024 年 4 月 8 日時点)
MD5 : 6665a0f0f0b1d55cb8a85f115a8a1d07

Payload From (1) : hxxps://paste[.]ee/d/1gYLt
Payload From (2) :…

日本語マルウェアメールの接到を確認しています。 #malspam in Japanese #stegocampaign ?

件名 : 対内支払いに関する BBL アドバイス BC I650210-000 (2024 年 4 月 8 日時点)
MD5 : 6665a0f0f0b1d55cb8a85f115a8a1d07

Payload From (1) : hxxps://paste[.]ee/d/1gYLt
Payload From (2) :…
account_circle
TomU | I'm still here... til the end 🕊️🇨🇭(@c_APT_ure) 's Twitter Profile Photo

not really a but still...

How often do you see malspam attached archives contain tons (94) of empty folders revealing the tools used by the attacker? (by far not the first time here)

?

Likely

bazaar.abuse.ch/sample/7e52b81…

not really a #MalwareChallenge but still...

How often do you see malspam attached archives contain tons (94) of empty folders revealing the tools used by the attacker? (by far not the first time here)

#OPSECfail ?

Likely #Formbook #malware

bazaar.abuse.ch/sample/7e52b81…
account_circle
Kurt Malsam(@kurtmalsam) 's Twitter Profile Photo

Learn how you could save 5% to 20% on your car insurance and become a safer driver along the way. Check out our easy-to-use DriveMyWay program that allows you to take the wheel when it comes to saving on your auto coverage. 🚗 bit.ly/43KIGEP

account_circle