Malware masquerades as the SEC US Securities and Exchange Commission and plants malware on government server that is compromised. Malware is a highly crafted phishing email campaign, as found in the recent data breach related financial fraud. The Louisiana state governments website was the first target where this malware was initially hosted, and seemingly compromised and used for this purpose The infection process uses DNS TXT records to create a bidirectional command-and-control (C2) channel, in which attackers are able to interact with the Windows Command Processor.”]
Source: https://hackercombat.com/sec-spoofed-malware-hosted-us-govt-server/

