Toot

Written by abuse.ch :verified: on 2025-02-01 at 14:23

Canada Revenue Agency (CRA) ๐Ÿ‡จ๐Ÿ‡ฆ themed #ClickFix campaign, using a fake captcha to spread #malware โคต๏ธ

FakeCaptcha:

๐Ÿ–ฑ๏ธ https://urlhaus.abuse.ch/url/3423002/

HTA download URL:

๐ŸŒ https://urlhaus.abuse.ch/url/3418524/

Dropped HTA:

๐Ÿ“„ https://bazaar.abuse.ch/sample/06e2adebb2b96be6cf7c2482c9948d9d21dcd1e16618800c71231951bed7b4d0/

=> View attached media

=> More informations about this toot | View the thread | More toots from abuse_ch@ioc.exchange

Mentions

Tags

=> View clickfix tag | View malware tag

Proxy Information
Original URL
gemini://mastogem.picasoft.net/toot/113929080638196517
Status Code
Success (20)
Meta
text/gemini
Capsule Response Time
243.125808 milliseconds
Gemini-to-HTML Time
0.717883 milliseconds

This content has been proxied by September (3851b).