1.3.5.1 spotted yesterday on zeus tracker, using fastflux and custom panel design
The payload can be found from the url yalitest4.info/c_be4/files/soft.exe
The payload can be found from the url yalitest4.info/c_be4/files/soft.exe
Code: Select all
Targeting european banks.Key: 7C BB 17 F9 7C 49 21 C6 F0 0B 55 4E ED 1F 4F F2
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
Login key: C1F20D2340B519056A7D89B7DF4B0FFF
Attachments
infected
(281.35 KiB) Downloaded 94 times
(281.35 KiB) Downloaded 94 times