Hackers first send a link to the victim via email and wait for the victim to click on the link.
After the victim clicks on the infected link, he goes to a site with the address mmtixmm.org, where a JavaScript code is executed and causes a file in MSI format to be downloaded, and if the victim clicks on the downloaded file, SSLoad malware.
It starts to download. SSLoad malware is very powerful and causes the deletion or theft of important system information.
This malware uses other malware to avoid detection and detection by antimalwares and also to maintain stable access.
… phishing emails to deliver malware called SSLoad.
The campaign, codenamed FROZEN#SHADOW by Securonix, also involves the deployment of Cobalt Strike and the ConnectWise ScreenConnect remote desktop software.
“SSLoad is designed to stealthily infiltrate systems, gather sensitive
You must be logged in to post a comment.