The attention of the personnel, followed by a large number of malicious software is hosted on Discord’s CDN server for remote download of Trojan horses. The number of users has increased year by year, and since the attachments uploaded to Discord can be downloaded by everyone, file sharing and transmission between users are fast and convenient, etc., it also caused cyber crimes. Discord is a popular chat and communication software mainly for gamers. It can be seen from the last resource link that the Trojan is hosted on the Discord CDN server. The download link of the Trojan: hxxps:///2r64b6 (the data shows that the source page of the short link is hxxps:///). After the “installation package” is executed, the legitimate Telegram installation package will be downloaded for installation to cover up the malicious behavior in secret, and reside through the RDP service. In March 2021, 360 Security Center discovered an attack that disguised Telegram installation package.
0 Comments
Leave a Reply. |
Details
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |