March 22, 2023, 8:30 p.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news


  • Emotet resumed spamming operations on March 7, 2023, after a months-long hiatus.

  • Initially leveraging heavily padded Microsoft Word documents to attempt to evade sandbox analysis and endpoint protection, the botnets switched to distributing malicious OneNote documents on March 16.

  • Since returning, Emotet has leveraged several distinct infection chains, indicating that they are modifying their approach based on their perceived success in infecting new systems.

  • The initial emails delivered to victims are consistent with what has been observed from Emotet over …

analysis botnets documents emails emotet endpoint endpoint protection evade infection malicious march microsoft microsoft word onenote operations protection resumes sandbox spam spamming switches systems word

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Director, Data Security Lead

@ Mastercard | London, England (Angel Lane)

Security Officer L1

@ NTT DATA | Texas, United States of America

Sr. Staff Application Security Engineer

@ Aurora Innovation | Seattle, WA

Senior Penetration Testing Engineer

@ WPP | Chennai

Cyber Security - Senior Software Developer in Test

@ BlackBerry | Bengaluru, Residency Road