Underminer was mentioned in our Fall 2018 round up. At the time, it was using CVE-2018-8174 (Internet Explorer) and CVE-4878 (Flash Player up to version 28.0.137) In mid-December, we noticed some changes with the exploit kit. Malwarebytes users are already protected against this exploit kit, as we block both the Internet Explorer and Flash Player exploits. The way the final payload is packaged and executed remains unique to Underminers.”]

