Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Share Post: Reddit Facebook
Russian Language Malspam Pushing Redaman Banking Malware
#1
Quote:The Redaman banking trojan ramped up its activity in the last part of 2018, employing ongoing back-end changes in order to evade detection, according to a new Wednesday report.

Redaman as a malware first came on the scene in 2015, and since then has consistently targeted victims that use Russian financial institutions. But from September through December 2018, researchers at Palo Alto Networks’ Unit 42 division saw increasing numbers of mass spam messages delivering the trojan.

The emails targeted Russian email recipients, often with email addresses ending in .ru, and delivered their payloads via a rotating assortment of archived Windows executable files disguised as PDF documents, according to the firm’s analysis.

https://threatpost.com/redaman-spams-russian-banking-customers-with-rotating-tactics/141129/
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  Coyote: A multi-stage banking Trojan abusing the Squirrel installer mrtrout 0 736 02-13-2024 , 03:37 AM
Last Post: mrtrout
  U.S. Agencies and Allies Partner to Identify Russian Snake Malware Infrastructure Wor mrtrout 0 1,694 05-10-2023 , 03:29 AM
Last Post: mrtrout
  Android malware BrazKing returns as a stealthier banking trojan mrtrout 0 577 11-19-2021 , 10:08 AM
Last Post: mrtrout
  New Variant of IcedID Banking Trojan Spreading Wildely mrtrout 0 1,016 06-29-2021 , 11:24 PM
Last Post: mrtrout
  Bizarro Banking Trojan Sports Sophisticated Backdoor Bjyda 0 755 05-23-2021 , 09:22 PM
Last Post: Bjyda

Forum Jump:


Users browsing this thread: 1 Guest(s)