Massive Malspam Campaign Finds a New Vector for FlawedAmmyy RAT

  • 20 July 2018
  • 0 replies
  • 127 views

Userlevel 7
Badge +54
20th July, 2018 By Tara Seals
 

 
Hundreds of thousands of emails are delivering weaponized PDFs containing malicious SettingContent-ms files.
 
A widespread spam campaign from the well-known financial criminal group TA505 is spreading the FlawedAmmyy RAT using a brand-new vector: Weaponized PDFs containing malicious SettingContent-ms files.
 
The SettingContent-ms file format was introduced in Windows 10; it allows a user to create “shortcuts” to various Windows 10 setting pages.
 
Full Article.

0 replies

Be the first to reply!

Reply