The Latest in IT Security

Posts Tagged ‘payloads’

After our previous finding involving a targeted attack whose payload were OS-dependent, we encountered a more recent run that leads to a malicious file specifically affecting Mac OSX. The said malware, detected as TROJ_MDROPPER.LB, is a MAC RAT/backdoor being used in Pro-Tibetan targeted campaigns, as initially described by Alienvault. In investigating the campaign, we found […]

Read more ...

It’s Friday the Thirteenth, an infamous date in the history of malware. So here’s a satirical trip down memory lane to consider other dies irae in the computer virus calendar: * Jerusalem virus – deletes files on any Friday the 13th from 1988 onwards. This virus came out in 1987 but explicitly suppressed its payload […]

Read more ...

Another bunch of “redret” sites to block, either by domain name or IP. These domains are being used as the payloads for spam emails and leave to a malicious web page. 79.137.237.63 (Digital Network JSC aka DINETHOSTING, Russia – recommend blocking 79.137.224.0/20) crredret.ru ctredret.ru czredret.ru 79.137.237.67 ((Digital Network JSC again) ciredret.ru coredret.ru cpredret.ru 91.195.11.42 (UkrStar ISP, Ukraine – recommend blocking […]

Read more ...


Categories

MONDAY, FEBRUARY 24, 2025
WHITE PAPERS

Mission-Critical Broadband – Why Governments Should Partner with Commercial Operators:
Many governments embrace mobile network operator (MNO) networks as ...

ARA at Scale: How to Choose a Solution That Grows With Your Needs:
Application release automation (ARA) tools enable best practices in...

The Multi-Model Database:
Part of the “new normal” where data and cloud applications are ...

Featured

Archives

Latest Comments