New financial malwares has never stopped being created and recreated. Some days ago I got a new malware that seems to be a new Banload variant.
There are some insertions about the hashes, although few infos about internet addresses used by this new variant
As usual, it starts with spaming. A client received a spam asking for download the software in order to take a look in some issue, otherwise his account would be blocked and bla bla bla.
The spam drive to download DCBR-17256899UCDHLCNS.msi,…