Friday, April 3, 2015

MALWARE: Bank Credential Stealing via Malware (Subset of Report)

We have seen several reports today for this malware with subjects
claiming to be from Equifax.

Attachment Name: my_new_photo3482374823749823.zip
MD5: 71c6bffc6a959355b5d1fe6ca75fdaf3

This file executed a process and injected code into it while unpacking
The file installs itself as an autorun item at Windows Startup
Generates some ICMP traffic
 

No comments:

Post a Comment