New Trickbot module implements Remote App Credential-Grabbing features
#1
Quote:The banking trojan is consistently evolving in hopes of boosting its efficacy.

The banking trojan known as Trickbot has resurfaced, with an updated info-stealing module that allows it to harvest remote desktop application credentials.
According to Trend Micro’s Noel Anthony Llimos and Carl Maverick Pascual, a new variant has recently come on the scene, and is being spread via seasonally-themed spam emails that use tax-incentive lures purporting to be from Deloitte. The emails promise help for getting the most out of this year’s changes to the U.S. tax code. Yet attached is a macro-enabled Microsoft Excel spreadsheet, which once activated, will download Trickbot to the victim’s computer.

Source
[-] The following 3 users say Thank You to sgx for this post:
  • darktwilight, harlan4096, silversurfer
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
QOwnNotes
26.6.10 Added lib...Kool — 03:01
uBlock Origin 1.72.0 (already available ...
uBlock Origin 1.72...harlan4096 — 10:25
uBOLite 2026.628.2035 (already available...
uBOLite 2026.628.2...harlan4096 — 10:25
Tor Browser 15.0.17
Tor Browser 15.0.1...harlan4096 — 10:24
Internet Download Manager 6.32 Build 9
Internet Download ...Kool — 16:10

[-]
Birthdays
Today's Birthdays
No birthdays today.
Upcoming Birthdays
No upcoming birthdays.

[-]
Online Staff
There are no staff members currently online.

>