Get a Pentest and security assessment of your IT network.

News

Tech support scammers using Winlogon

The method is the Winlogon Shell registry value. It can be changed by so-called skins or replacement shells with the users consent, but in this case it was done without consent. The installer is a file called Hotstar.exe and was submitted to us by a fellow researcher. We suspect the file was hosted on the site amiga[dot]tech, because of two reasons. After opening the two browser windows the installer tells you its done- and it triggers a reboot of the system.”]

Source: https://blog.malwarebytes.com/cybercrime/2016/05/tech-support-scammers-using-winlogon/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Spotify denies hack; users subjected to weird music beg to differ

News

Is it possible to attribute the backdoor Regin to the cybercrime?