Fake PrivatBank email delivers AgentTesla and Phishing

  I received a rather interesting email earlier today. It pretends to be an email from Privatbank.com and written mainly in Ukranian.  There is not a known bank using PrivatBank.com anywhere I can find listed although a website for this domain was… Continue reading Fake PrivatBank email delivers AgentTesla and Phishing

Fake order eventually drops Lokibot but something else happens

I am not entirely sure what the in initial binary download with this one is, but there are indications it might be Dark Comet RAT. What we do know is that it drops a Lokibot binary The word doc is actually a RTF file containing embedded ole objects. Th… Continue reading Fake order eventually drops Lokibot but something else happens