2018-12-10 - QUICK POST: MALSPAM PUSHING IMMINENT MONITOR RAT

ASSOCIATED FILES:

NOTES:

 


Shown above:  Screenshot of the email and attached Word document.

 


Shown above:  The macro to retrieve malware is pretty straight-forward in this case.

 


Shown above:  Infection traffic filtered in Wireshark, and the associated open directory hosting malware.

 


Shown above:  Malware persistent on the infected Windows host.

 

Click here to return to the main page.