The AsyncRAT malware, which was previously distributed through files with the.
Chm extension, is now being disseminated via WSF script format.
The WSF file was found to be disseminated in a compressed file format through URLs included in emails.
AsyncRAT spreads through a variety of strategies and tactics.
Malspam and phishing efforts, which mimic legitimate messages like DHL shipment updates with malicious file attachments, are the most prevalent infection vectors.
The AhnLab Security Emergency Response Center reports that the downloaded zip file is decompressed to produce a file with the.
This file just has one