A research that covers the structural aspects of CPL files & how criminals are using it to spread malware in Brazil:http://bit.ly/1f6DoU3
@c_APT_ure Pretty lame tactic indeed. Thanks Tom, I'll check it out. @TrendLabs @MenteBinaria
-
-
@bartblaze Lame? Maybe, but hey it's pretty effective evading AV & perimeter defenses and get successful infections. Maybe not too lame :P -
@c_APT_ure Haha, that may be true. Do you know if any Yara signatures for this exist already by any chance? - Show replies
New conversation -
-
-
@bartblaze@c_APT_ure Honestly, I can't understand why .rtf, .cpl, .com and other odd creations still exist and work! :@ -
@MenteBinaria I can see use in all of these - unfortunately, so do the bad guys.@c_APT_ure - Show replies
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.