Get a Pentest and security assessment of your IT network.

News

Tech support scammers using Winlogon

The method is the Winlogon Shell registry value. It can be changed by so-called skins or replacement shells with the users consent, but in this case it was done without consent. The installer is a file called Hotstar.exe and was submitted to us by a fellow researcher. We suspect the file was hosted on the site amiga[dot]tech, because of two reasons. After opening the two browser windows the installer tells you its done- and it triggers a reboot of the system.”]

Source: https://blog.malwarebytes.com/cybercrime/2016/05/tech-support-scammers-using-winlogon/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Terrorism WEEKLY DIGESTTHREAT INTELLIGENCE FEED 23rd Jul 2nd

News

Attacker.NET : Server Management & Security, Website Malware Removal & Website Security