Kid@sh.itjust.worksM to Cybersecurity@sh.itjust.worksEnglish · 3 months agoHackers Use Weaponized JPEG File to Deploy Trojanized ScreenConnect Malwarecybersecuritynews.comexternal-linkmessage-square3linkfedilinkarrow-up11arrow-down10
arrow-up11arrow-down1external-linkHackers Use Weaponized JPEG File to Deploy Trojanized ScreenConnect Malwarecybersecuritynews.comKid@sh.itjust.worksM to Cybersecurity@sh.itjust.worksEnglish · 3 months agomessage-square3linkfedilink
minus-squareNickeeCoco@piefed.sociallinkfedilinkEnglisharrow-up0·3 months ago The embedded PowerShell code creates a hidden folder at C:\Systems and downloads a trojanized ScreenConnect package from legitserver.theworkpc[.]com over TCP port 5443. Nothing to see here, just a legit server doing work with the systems.
Nothing to see here, just a legit server doing work with the systems.