unixfreaxjp wrote:Few hours ago this campaign via spam was spotted:
The attachment (downloader part): https://www.virustotal.com/en/file/595b ... /analysis/
It downloads the set: https://www.virustotal.com/en/file/d45e ... 410358503/
Details distribution and CNC information I wrote in VT & the pictures, pls bear the hurry pace...
You work on linux too much lately. This is "dridex" variant of Feodo.