Sophisticated delivery method leveraged for novel Agent Tesla variant

Threat actors have been distributing a new Agent Tesla malware variant in attacks leveraging a lure file with the ZPAQ file compression format with improved compression ratios and journaling functionality over the RAR and ZIP formats, according to The Hacker News. Intrusions commence with the delivery of emails with a ZPAQ file masquerading as a PDF document, which when downloaded facilitates the extraction of an unarchived .NET executable made to look 1 GB in size to evade detection, according to a report from G Data.

Source: SC Magazine

 


Date:

Categorie(s):

Tag(s):