as this site spreads the new Trojan Autoit
files created :
C:\WINDOWS\hinhem.scr |
C:\WINDOWS\scvshosts.exe |
C:\WINDOWS\system32\autorun.ini |
C:\WINDOWS\system32\blastclnnn.exe |
C:\WINDOWS\system32\scvshosts.exe |
C:\WINDOWS\system32\setting.ini |
C:\WINDOWS\hinhem.scr |
C:\WINDOWS\scvshosts.exe |
C:\WINDOWS\system32\autorun.ini |
C:\WINDOWS\system32\blastclnnn.exe |
C:\WINDOWS\system32\scvshosts.exe |
C:\WINDOWS\system32\setting.ini |
Initial vector: Whatsapp spam user posing as union bank with logo in user profile shared apk file named as “Union Bank Aadhaar Update....