2017-01-25 - HANCITOR INFECTION WITH SEND SAFE ENTERPRISE (SSE) SPAMBOT TRAFFIC

NOTICE:

ASSOCIATED FILES:

 

NOTES:

 

MALSPAM


Shown above:  Screenshot of the email.

 

TRAFFIC

ASSOCIATED ACTIVITY:


Shown above:  Pcap of the infection traffic filtered in Wireshark.

 

MALWARE

MALWARE RETRIEVED FROM THE INFECTED HOST:

 

it, look at the "about" page of this website.

Click here to return to the main page.