Salvatore Lombardo · @Slvlombardo
5 followers · 238 posts · Server mstdn.social

, veicolato tramite false istanze
Prosegue la campagna... - The Computer Security News (BLOG) computersecuritynews.it/malspa

#Civis #Ursnif #malspam

Last updated 1 year ago

Salvatore Lombardo · @Slvlombardo
5 followers · 151 posts · Server mstdn.social

, veicolato tramite false istanze CIVIS - The Computer Security News (BLOG)

#Ursnif #malspam

Last updated 1 year ago

Salvatore Lombardo · @Slvlombardo
4 followers · 81 posts · Server mstdn.social

Ongoing campaign loads DLL that claims to be txt file into memory. Follow on activity from both and

C2 8.208.90.2, 47.241.106.208, various domains usually starting with f1[.]pipen[.]at

IOC's in @MISPProject Priv.

thedfirreport.com/2020/04/24/u …pic.twitter.com/0OoRNLWZBO

#dfir #cobaltstrike #tvrat #Ursnif

Last updated 5 years ago