Get a Pentest and security assessment of your IT network.

News

Authors digitally signed Spymel Trojan to evade detection

Zscaler ThreatLabZ detected a new infostealer malware family dubbed Spymel that uses stolen certificates to evade detection. The bad actors behind the threat distributed the malware through spam emails containing an ZIP archive containing a downloader. The address of the command and control (C&C) is hardcoded within its code. In order to send information to the attackers, the malware connects to a remote domain android.sh(213.136.92) on port 1216. The malware infected Windows XP and Windows 7 systems, creating registry keys to gain persistence.”]

Source: http://securityaffairs.co/wordpress/43380/cyber-crime/spymel-trojan-signed-code.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

1 day attack with DDoS booter costs $60 causing $720k in damageSecurity Affairs

News

NSA-linked Cisco exploit poses bigger threat than previously thought