<tutorialjinni.com/>

JSSLoader RAT

Posted Under: Windows on Mar 26, 2022
JSSLoader RAT
JSSLoader is a Remote Access Trojan (RAT) is spreading through Microsoft Excel's XLL add-in file. An XLL file is a type of dynamic link library (DLL) file that can only be opened by Excel.

Nokoyawa Ransomware

Posted Under: Windows on Mar 22, 2022
Nokoyawa Ransomware
Nokoyawa Ransomware is a new malware but has strong similarities with Hive Ransomware. There attack chain, tools to penetrate and deploy and the order in which they execute various infection steps are similar.

CaddyWiper

Posted Under: Windows on Mar 15, 2022
CaddyWiper
CaddyWiper is the forth wiper detected that is targeting Ukraine infrastructure. It erases user data and partition information from attached drives.

Pandora Ransomware

Posted Under: Windows on Mar 15, 2022
Pandora Ransomware
Pandora Ransomware hits automotive spare parts manufacturing giant DENSO. Pandora targets corporate networks steals data for double extortion attacks. It is new ransomware actor so its tactics are unknown at this time.

RURansom Wiper

Posted Under: Windows on Mar 9, 2022
RURansom Wiper
RURansom Wiper is targeting Russian assets, which appear to be a direct retaliation of Russian invasion on Ukraine. The malware is written in .net and is using AES-CBC with hard coded salt.