"Request from the Medoc Company": State Special Communications Service warns of another hostile cyberattack

 • 101740 переглядiв

CERT-UA warns about a new cyberattack UAC-0050 using fraudulent emails called "requests" to distribute RemcosRAT and QuasarRAT malware.

Cybercriminals from the UAC-0050 group have started sending fraudulent emails with the subject of "requests". The governmental team for responding to computer emergencies of Ukraine CERT-UA warns about this, the press service of the State Special Communication Service reports, UNN writes.

Details

According to the experts, on January 9, emails were sent with the subject lines "request for court documents" and "request". The emails contained archive files, which, if opened, would infect a computer with RemcosRAT and QuasarRAT malware.

Subsequently, a massive distribution of emails with the subject "Request from Medoc" was recorded with an attachment in the form of a RAR-archive "Request.rar" or a link to download it from Bitbucket or Google Drive.

As in the previous case, running the attached files will install the Remote Utilities program on the system.

Recall

As UNN previously reported , Russian hackers have changed their methods and goals. Now, instead of destroying our system, they are trying to find evidence of their war crimes.

Revenge for Kyivstar continues: hackers hack Moscow Internet provider - source09.01.24, 11:29

Anna Onishchenko Technologies
Popular
News by theme
"The Graph Cat is red and sad again": Ukrenergo urges to save electricity

 • 89202 переглядiв

Four Ukrainian sailors are held captive by Houthis

 • 29018 переглядiв

The main thing is to be fair: Zelensky on the draft law on mobilization

 • 26900 переглядiв

Russian army offensive fails. The enemy suffers heavy losses - Syrsky

 • 28581 переглядiв

Ukrainian female athletes have already won two medals at the European Snowboard Cup

 • 25113 переглядiв

More than 1,200 flights canceled in the U.S. due to a severe winter storm

 • 24564 переглядiв