Modiloader From Obfuscated Batch File, (Mon, Dec 23rd)

My last investigation is a file called “Albertsons_payment.GZ”, received via email. The file looks like an archive but is identified as a picture by TrID:

Loading

Leave a Reply

Your email address will not be published. Required fields are marked *

en_USEnglish