@da_667 Also, @jane_0sint has this as #strrat

Campagne #Malware #Italy Week 36

β˜ οΈπŸ’£πŸ”₯πŸ‘»
#Formbook: Richiesta prodotti
#AgentTesla: Fattura
#Remcos: Ordine
#EagleSpy: #APK Bank
#RedLine: Spedizione
#Guloader: Delivery
#Vidar: Pagamento via PEC
#StrRat: Ordine

#mwitaly

Campagne #Malware #Italy Week 32
πŸ”₯β˜ οΈπŸ’£πŸ‘»

#SnakeKeyLogger: Citazione
#Guloader: Ordine
#Formbook: Modulo bancario
#AsyncRAT: Documento
#RemcosRAT: Prezzi
#AgentTesla: Preventivo
#ModiLoader: Pagamento
#StrRat: Ordine
#RedLine: Quotazione
#Vidar: Pagamento
#Ousaban: Documento

#mwitaly

Campagne #Malware #Italy Week 31

πŸ‘»πŸ”₯πŸ’£β˜ οΈ
#SmokeLoader: Preventivo
#RemcosRAT: Pagamento Bancario
#AgentTesla: Etratto Conto
#Formbook: Ordine
#AsyncRAT: Fattura
#StrRAT: Delivery
#SpyNote - #BingoMod: Malware APK

#mwitaly

Campagne #Malware #Italy Week 24

β˜ οΈπŸ’£πŸ”₯πŸ‘»
#AgentTesla: Preventivo
#Formbook: Bonifico
#StrRat: Spedizione
#Lumma - #Stealc: Setup
#Adwind: Documenti
#PureCrypter: Hotel

#mwitaly

In recent months #STRRAT has become one of the top malware families submitted to Any.Run’s malware sandbox. Read our latest detection, as we dissect the inner workings of STRRAT. From its origins targeting browser cryptocurrency wallets to its evolution into a ransomware-capable entity in version 1.5, we explore its multifaceted capabilities. Plus, follow along with our step-by-step guide using a sample PCAP file from Any.Run. Read now: https://corelight.com/blog/newsroom/news/strrat-malware
Detecting the STRRAT Malware Family | Corelight

In recent months STRRAT has become one of the top malware families submitted to Any.Run. Here's how to detect it.

Campagne #Malware #Italy Week 17

☠️πŸ”₯πŸ‘»πŸ’£
#Formbook: Pagamento
#AgentTesla: Bank
#Remcos: Preventivo
#Guloader: Ordine
#StrRat: Quotazione
#Irata: APK Bank
#LockBit: Document
#Njrat: Documento

#mwitaly

Campagne #Malware #Italy Week 16

πŸ‘»πŸ’£πŸ”₯☠️

#AgentTesla: Offerta
#Remcos: Fattura
#WikiLoader: Delivery
#Guloader: Ordine
#Irata: APK Bank
#DarkCloud: Preventivo
#Formbook: Quote
#StrRat: Pagamento
#mwitaly

Campagne #Malware #Italy Week 47

mwitalyenti πŸ”₯ ☠️
#AgentTesla: Richiesta Urgente
#SmsSpy: APK Banking
#Pikabot: Resend
#RemcosRAT - #SystemBC: AgenziaEntrate

D'Eccezione πŸ’£ πŸ‘»
#StrRat: Fake e-commerce
#Vidar: Resend

#mwitaly

Seeing several #strrat samples today...all going to:

microsoftmicrosoftmicrosoft[.]ydns[.]eu