2018-05-14 - QUICK POST: HANCITOR WITH ZEUS PANDA BANKER
NOTICE:
- The zip archives on this page have been updated, and they now use the new password scheme. For the new password, see the "about" page of this website.
ASSOCIATED FILES:
- Zip archive of the emails: 2018-05-14-Hancitor-malspam-48-examples.zip 95.4 kB (95,353 bytes)
- Zip archive of the infection traffic: 2018-05-14-Hancitor-infection-with-Zeus-Panda-Banker.pcap.zipp 2.5 MB (2,450,607 bytes)
- Zip archive of the malware: 2018-05-14-malware-from-Hancitor-infection.zip 234.7 kB (234,657 bytes)
IMAGES
Shown above: Flow chart for recent Hancitor infections.
Shown above: Screenshot from an email.
Shown above: Example of a Word document downloaded from link in the email.
Shown above: Traffic from an infection filtered in Wireshark.
Click here to return to the main page.