A spoofed email purporting to be from Government Development Bank for Puerto Rico (GDB) has recently been discovered. This email has the following subject line GDB Alert: Important Notice. This email contains a Download link which points to an Ow.ly URL shortener which ultimately points to the original malicious URL http://www.mobilitycenter.it/wp-admin/images/PAYMENT_GUIDELINES.zip. Website www.mobilitycenter.it serves a malicious ZIP file PAYMENT_GUIDELINES.zip. This ZIP contains the following executable PAYMENT_TRANSACTION_SLIP.exe and was classified as HEUR:Trojan.Win32.Generic and Trojan.PWS.Multi.1693 from different AV vendors. Based on the threat name given, this executable is most likely a Password Stealer (PWS) trojan.
Created: 2026-02-23
Indicatorsは見つかっていない。
このPulseに見つかったCVEはありません。