Updated July 17, 2019
The TA505 cybercrime group appears to have launched a bilateral campaign in June that could bring victims to justice.
New applications are being developed in many Android countries.
Both campaigns received phishing emails from victims, links to download Microsoft Word and Excel files.
This blog will be published on July 2
If a proof point is enabled, the downloaded macros are included in the corrupted macro file.
Androgut or Flavedammi charger. Either way, the charger offers a board with flavedamimi.
One campaign targets South Korea and others
Financial institutions in Singapore, United Arab Emirates
In both cases, the topic is located at the e-mail address
During the financial documents such as bills
Payment or advance.
The certificate states that AndroidMT is written in a C ++ programming language and communicates with its C2 server via an
He seems to have shared some code and behavior with the Android and QtLoader malware (researchers have not yet explained it).
Confidence in the jump).
It also includes a number of analytical processes for android
This sandpaper, mouse movement, wine simulator
Depending on the type, there are two drugs
User Rights: Create or edit jobs
LNK documentation for rotation or storage,
It provides evidence.
With these new pressures in June 2019, the company announced the launch of Vertical PV
Major regions such as the United States, the United Arab Emirates and Singapore
Some TA505s usually follow financial behavior,
Blog entry is complete. When is the latest Android download
Despite the height of the FlawedAmmy, it is similar to the TA505
New animals for summer 2019