Lazarus Jan 2022 Campaign - Macilious-Module File Transfer

Strike ID:
C22-Mlh01
False Positive:
f
Variants:
1
Year:
2022

Description

This strike simulates the download of a png file via an HTTP GET request. This file is a malicious dll disguised as png file which sends command and control traffic after execution.