----------------------------------------------------------------------------------
@MSGID: 2:467/888.188 661f45f9
A new variant of a remote access trojan called Bandook has been observed
being propagated via phishing attacks with an aim to infiltrate
Windows machines, underscoring the continuous evolution of the
malware. Fortinet FortiGuard Labs, which identified the activity in
October 2023, said the malware is distributed via a PDF file that
embeds a link to a password-protected .7z archive.
https://thehackernews.com/2024/01/new-bandook-rat-variant-resurfaces.html
2024-01-05 10:46:00+05:30
________________________________
--- UA.HACKER - твiй помiчник у сферi кiбербезпеки | читай ще +SECURITY +UA.IT
* Origin: Читай нас за допомогою
http://winpoint.org (2:467/888.188)
SEEN-BY: 463/68 877 1331 467/4 888 5001/100
5005/49 5015/255 5019/40 5020/848
SEEN-BY: 5020/1042 4441 12000 5030/49 1081 5058/104
5060/900 5061/133
SEEN-BY: 5075/128
@PATH: 467/888 5020/1042 4441