Analysis of Latin American Bot (Vadokrist) : Part I - Mechanism & Dropper
EXECUTIVE SUMMARY Vadokrist Trojan aims to steal credentials from victims’ machines and to create banking overlay windows when the victim visits their home banking portals. Here is the list of known Latin American banking Trojans • Grandoreiro • URSA • Javali • Vadokrist (aka) Mispadu DISTRIBUTION Vadokrist is propagated via social engineering schemas – namely, phishing/malscam campaigns TECHNICAL ANALYSIS Abusing MSI (Windows Installer) was one of the growing threat in cyber ind...