We got a new variant of XLoader
via a link http://wrssa[.]xyz
from scam SMS message in mid-March 2020. It is a new version of XLoader
using Blogspot and Pinterest to deliver C&C address and phishing sites.

We got a new variant of XLoader
via a link http://wrssa[.]xyz
from scam SMS message in mid-March 2020. It is a new version of XLoader
using Blogspot and Pinterest to deliver C&C address and phishing sites.
我們在三月中旬經由詐騙簡訊的連結 http://wrssa[.]xyz
獲得了一個 XLoader 的新變種樣本,這個新變種利用 Blogspot 和 Pinterest 來隱藏 C&C 位址以及釣魚網站。
Penetration Testing / Malware Analysis / Threat Hunting / APT Research
Ingress Enlightened Agent
Threat Researcher