本帖最后由 YorkWaugh 于 2020-3-24 08:08 编辑
下载地址:https://www.lanzous.com/ial0flc
详细内容请查看https://www.lanzous.com/b0159g2mb
ASSOCIATED FILES: 2020-03-23-Ursnif-IOCs.txt.zip 1.1 kB (1,066 bytes) 2020-03-22-example-of-Polish-email-pushing-Ursnif.eml.zip 68 kB (68,005 bytes) 2020-03-23-Ursnif-infection-traffic.pcap.zip 957 kB (957,263 bytes) 2020-03-23-Ursnif-malware-and-artifacts.zip 3.0 MB (2,964,146 bytes) IMAGES 
Shown above: Screenshot of the malspam.

Shown above: Screenshot of the attached XLS spreadsheet.

Shown above: Traffic from an infected Windows host.

Shown above: DLL file retrieved after enabling the Word macro.
|