• caglararli@hotmail.com
  • 05386281520

Emotet Botnet Distributing Self-Unlocking Password-Protected RAR Files to Drop Malware

Çağlar Arlı      -    93 Views

Emotet Botnet Distributing Self-Unlocking Password-Protected RAR Files to Drop Malware

The notorious Emotet botnet has been linked to a new wave of malspam campaigns that take advantage of password-protected archive files to drop CoinMiner and Quasar RAT on compromised systems. In an attack chain detected by Trustwave SpiderLabs researchers, an invoice-themed ZIP file lure was found to contain a nested self-extracting (SFX) archive, the first archive acting as a conduit to launch