Cisco Talos has been monitoring various malware distribution campaigns leveraging the malware loader Brushaloader. The threat leverages malicious email campaigns targeting specific geographic regions to distribute various malware payloads, primarily Danabot. The advanced command-line auditing and reporting available within ThreatGrid make analyzing threats much more efficient. Threats demonstrate the importance of ensuring that ensuring that. that. PowerShell logging is enabled and configured on endpoints in most corporate environments in most. corporate environments. The threat is being actively developed and refined over time.”]
Source: https://blog.talosintelligence.com/2019/02/combing-through-brushaloader.html

