Fake TNT delivery drops WSHRAT via DiscordApp

It seems to be the week for harder to analyse & dodgy delivery systems that more carefully target specific countries / regions or even specific  isps. Yesterday we saw a fake e-fax notification in German language that eventually led to a Buran rans… Continue reading Fake TNT delivery drops WSHRAT via DiscordApp

Mary Sherman Morgan, Rocket Fuel Mixologist

In the fall of 1957, it seemed as though the United States’ space program would never get off the ground. The USSR had launched Sputnik in October, and this cemented their place in history as the first nation in space. If that weren’t bad enough, they put Sputnik 2 into …read more

Continue reading Mary Sherman Morgan, Rocket Fuel Mixologist

TNT Ransomware – How to Remove Active Infections

THT ransomware is a very dangerous virus instance that has been identified in an ongoing hacker attack. It has been discovered during a security investigation of large enterprises around the world. It is an advanced threat that needs to be…Read more
Continue reading TNT Ransomware – How to Remove Active Infections

fake parcel delivery services malspam with word doc attachment delivers ursnif banking Trojan

A slightly different one today and I am not sure how many recipients will be infected by this. On my server, some are being delivered with the word doc attachment, but about half are just getting the email body with  an HTML attachment which has the same details as the email body and Continue reading → Continue reading fake parcel delivery services malspam with word doc attachment delivers ursnif banking Trojan