Source |
The Hacker News |
Identifiant |
7609913 |
Date de publication |
2022-10-21 22:17:00 (vue: 2022-10-21 18:07:03) |
Titre |
Emotet Botnet Distributing Self-Unlocking Password-Protected RAR Files to Drop Malware |
Texte |
The notorious Emotet botnet has been linked to a new wave of malspam campaigns that take advantage of password-protected archive files to drop CoinMiner and Quasar RAT on compromised systems.
In an attack chain detected by Trustwave SpiderLabs researchers, an invoice-themed ZIP file lure was found to contain a nested self-extracting (SFX) archive, the first archive acting as a conduit to launch |
Notes |
|
Envoyé |
Oui |
Condensat |
acting advantage an attack archive been botnet botnet has campaigns chain detected coinminer compromised conduit contain distributing drop emotet extracting file files first found invoice launch linked lure malspam malware nested new notorious emotet password protected quasar rar rat researchers self sfx spiderlabs systems take themed trustwave unlocking wave zip |
Tags |
Malware
|
Stories |
|
Move |
|