Fake DHL email delivers an unknown keylogger coupled with a phishing scam

I was extremely surprised to wake up this Sunday Morning to a whole slew of fake DHL delivery notice emails with a macro enabled  word doc attachment that eventually downloads some sort of Keylogger. There is some dispute as to what the actual Keylogge… Continue reading Fake DHL email delivers an unknown keylogger coupled with a phishing scam

French Police Remotely Removed RETADUP Malware from 850,000 Infected PCs

The French law enforcement agency, National Gendarmerie, today announced the successful takedown of one of the largest wide-spread RETADUP botnet malware and how it remotely disinfected more than 850,000 computers worldwide with the help of researchers… Continue reading French Police Remotely Removed RETADUP Malware from 850,000 Infected PCs

Fake PrivatBank email delivers AgentTesla and Phishing

  I received a rather interesting email earlier today. It pretends to be an email from Privatbank.com and written mainly in Ukranian.  There is not a known bank using PrivatBank.com anywhere I can find listed although a website for this domain was… Continue reading Fake PrivatBank email delivers AgentTesla and Phishing

Astaroth Trojan Resurfaces, Targets Brazil through Fileless Campaign

During routine detection monitoring from our Advanced Threat Control technology, Bitdefender researchers found an interesting spike in malware activity that involved using Microsoft binaries in the infection process, as well as GitHub and Google Drive … Continue reading Astaroth Trojan Resurfaces, Targets Brazil through Fileless Campaign

More AgentTesla keylogger info-stealer campaigns hitting UK

We are still seeing continuous AgentTesla keylogger / Info-Stealer campaigns hitting the UK. We sill aren’t seeing a lot of other malware at the moment. I have received about 20 different versions over the last week that have all been nothing spe… Continue reading More AgentTesla keylogger info-stealer campaigns hitting UK

More AgentTesla keylogger and Nanocore RAT in one bundle

We are seeing a continuation of even more AgentTesla malspam campaigns again this morning. However today’s is somewhat different to usual and also delivers a Nanocore RAT. Actually the Nanocore RAT  is downloading the AgentTesla keylogger. And af… Continue reading More AgentTesla keylogger and Nanocore RAT in one bundle

More AgentTesla keylogger as fileless malware.

We are seeing a continuation of the new style AgentTesla malspam campaign again this morning. This is still using a multistage downloader eventually resulting in the AgentTesla keylogger / infostealer being run on the victim’s computer as a filel… Continue reading More AgentTesla keylogger as fileless malware.

AgentTesla keylogger as fileless malware.

I am seeing a somewhat different to usual AgentTesla malspam campaign this morning. This is using a multistage downloader eventually resulting in the AgentTesla keylogger / infostealer being run on the victim’s computer as a fileless malware. It … Continue reading AgentTesla keylogger as fileless malware.

HawkEye Malware Operators Renew Attacks on Business Users

IBM X-Force researchers report an increase in HawkEye v9 keylogger infection campaigns targeting businesses around the world.

The post HawkEye Malware Operators Renew Attacks on Business Users appeared first on Security Intelligence.

Continue reading HawkEye Malware Operators Renew Attacks on Business Users