How 'Kimsuky' hackers ensure their malware only reach valid targets

Discussion in 'malware problems & news' started by guest, Aug 25, 2022.

  1. guest

    guest Guest

    By Bill Toulas @billtoulas - August 25, 2022
    Kaspersky: Kimsuky’s GoldDragon cluster and its C2 operations
     
    Last edited by a moderator: Sep 3, 2022
  2. Minimalist

    Minimalist Registered Member

    Joined:
    Jan 6, 2014
    Posts:
    14,909
    Location:
    Slovenia, EU
    There's probably some code displayed in text on that site, since ESET blocks access to it:

    upload_2022-8-26_6-0-40.png
     
  3. Krusty

    Krusty Registered Member

    Joined:
    Feb 3, 2012
    Posts:
    10,487
    Location:
    Among the gum trees
    Kaspersky doesn't, or maybe uBO blocks it.
     
  4. Minimalist

    Minimalist Registered Member

    Joined:
    Jan 6, 2014
    Posts:
    14,909
    Location:
    Slovenia, EU
    In my case Eset blocks it, not uBlock Origin.
    It's probably just a detection of malicious code if it's posted in text. It would be better to post code as an image to avoid similar problems.
     
  5. Krusty

    Krusty Registered Member

    Joined:
    Feb 3, 2012
    Posts:
    10,487
    Location:
    Among the gum trees
    Yeah, it does appear to be posted as text.
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.