Phishing Campaign Delivers Nasty Ransomware, Credential-Theft Two-Punch
#1
Quote:An array of phishing emails harboring Word attachments with embedded macros have been infecting systems with a deadly malware and ransomware duo.

The campaign, spotted by researchers at Carbon Black, has hit infected systems with a lethal attack combination that harvests credentials, gathers system and process information, and then encrypts data in order to extort payments from victims.

The attack originally came in via phishing emails that contained an attached Word document with embedded macros. The macro would then call an encoded PowerShell script and use a series of techniques to download and execute both a Ursnif malware strain and GandCrab ransomware variant.

Source: https://threatpost.com/phishing-gandcrab-ursnif/141182/
[-] The following 3 users say Thank You to silversurfer for this post:
  • Deep900, harlan4096, Toligo
Reply


Messages In This Thread
Phishing Campaign Delivers Nasty Ransomware, Credential-Theft Two-Punch - by silversurfer - 25 January 19, 13:32

Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
QOwnNotes
26.3.18  Added op...Kool — 08:37
Mozilla Firefox Browser 149.0
Mozilla Firefox Br...harlan4096 — 08:09
AxCrypt 3.0.0.82
AxCrypt 3.0.0.82: ...harlan4096 — 08:07
uBOLite 2026.323.2044 (already available...
uBOLite 2026.323.2...harlan4096 — 08:06
AnyDesk 9.6.12 for Windows
Version 9.6.12 for...harlan4096 — 08:05

[-]
Birthdays
Today's Birthdays
avatar (43)artmaGoork
Upcoming Birthdays
avatar (44)gapedDow
avatar (38)snorydar
avatar (46)qaqapeti

[-]
Online Staff
There are no staff members currently online.

>