Leave a Reply

8 Comments on "return of fake UPS cannot deliver malspam with an updated nemucod ransomware and Kovter payload"

Notify of
avatar
10000
Sort by:   newest | oldest | most voted
PC Tech
Guest
PC Tech

“… Sites involved in this campaign found so far this week:
resedaplumbing .com > 166.62.58.18
modx.mbalet .ru> 95.163.101.104
artdecorfashion .com > 107.180.0.125
eventbon .nl > 109.106.167.212
elita5 .md > 217.26.160.15
goldwingclub .ru > 62.109.17.210
www .gloszp .pl > 87.98.239.19
natiwa .com > 115.84.178.83
desinano .com.ar > 190.183.59.228
amis-spb .ru > 77.222.61.227
perdasbasalti .it > 94.23.64.3
120.109.32.72: https://www.virustotal.com/en/ip-address/120.109.32.72/information/
calendar-del .ru > 77.222.61.227
indexsa.com .ar > 190.183.59.228 …”

//

trackback

[…] New Variant of the Nemucod Ransomware Released […]

trackback

[…] A new offshoot of the Nemucod family surfaces that does not modify filenames or append any extensions. It displays an updated version of the ransom note that demands 0.45 BTC for data recovery. […]

trackback

[…] July 3, 2017, Myonlinesecurity (Twitter @dvk01uk) reported a new spam campaign targeting organizations around the world with a […]

trackback

[…] and Kovter malware on a victim’s Windows computer.  My Online Security reported on this recent wave of malspam late last month, and it’s been fairly constant since […]

trackback

[…] ransomware and Kovter malware on a victims Windows computer. My Online Security reported on this recent wave of malspam late last month, and it border-width:2px” /> Shown above: Example of an email from […]

trackback

[…] ransomware and Kovter malware on a victims Windows computer. My Online Security reported on this recent wave of malspam late last month, and it border-width:2px” /> Shown above: Example of an email from […]

trackback

[…] Fake UPS Missed Delivery SPAM Source: https://myonlinesecurity.co.uk […]

wpDiscuz

By continuing to use the site, you agree to the use of cookies. more information

The cookie settings on this website are set to "allow cookies" to give you the best browsing experience possible. If you continue to use this website without changing your cookie settings or you click "Accept" below then you are consenting to this.

Close