Source |
Fortinet |
Identifiant |
197824 |
Date de publication |
2016-10-14 11:10:28 (vue: 2016-10-14 11:10:28) |
Titre |
A Brazilian Trojan Using A Jar File, VB Scripts And A DLL For Its Multi-Stage Infection |
Texte |
As part of Fortinet's continued efforts to protect its customers, we carry out a variety of tests to improve the detection of malicious content, whether it's file or network related. While checking out some HTTPS phishing websites last month, one URL stood out. It wasn't a phishing site, but it downloaded a file called BR52357896253ex.zip (which is detected as “Java/Banload.BD!tr†by Fortinet AntiVirus service) from a file sharing website. The compressed file also contained a Jar that downloaded additional files,... |
Notes |
|
Envoyé |
Oui |
Condensat |
additional also antivirus br52357896253ex brazilian but called carry checking compressed contained content continued customers detected detection dll downloaded efforts file files fortinet from https improve infection its jar last malicious month multi network one out part phishing protect related scripts service sharing site some stage stood tests trojan tr†url using variety wasn website websites whether which zip “java/banload |
Tags |
|
Stories |
|
Move |
|