The small obfuscated .js file that only runs in the context of Windows Scripting Hosting has been used for Kovter and Boaxxe for months. Now, a possible new malware in the mix. Mem strings indicate CoreBot but also web-inject style banking malware.
Created: 2026-02-23
Indicatorsは見つかっていない。
このPulseに見つかったCVEはありません。