2017-11-06 - HANCITOR INFECTION WITH ZEUS PANDA BANKER

NOTICE:

ASSOCIATED FILES:

  • 2017-11-06-Hancitor-infection-with-Zeus-Panda-Banker.pcap   (640,743 bytes)
  • 2017-11-06-Hancitor-document.doc   (181,760 bytes)
  • 2017-11-06-Zeus-Panda-Banker.exe   (153,600 bytes)
  • 2017-11-06-Hancitor-malspam-16-examples.txt   (40,812 bytes)
  • 2017-11-06-Hancitor-notes.txt   (2,883 bytes)

 

IMAGES


Shown above:  Screenshot from one of the emails.

 


Shown above:  Following a link from one of the emails.

 


Shown above:  A document downloaded from one of the links.

 


Shown above:  Traffic from an infection filtered in Wireshark.

 


Shown above:  Zeus Panda Banker made persistent on the infected Windows host.

 

Click here to return to the main page.