🚨 A #malspam campaign delivering #AsyncRAT has been spotted. The email has a PDF attachment which contains a link to an HTML smuggling page hosted on repl[.]co. When accessed, the page drops a malicious registry file, which subsequently downloads #AsyncRAT as Drive32[.]exe through #PowerShell commands. #MailMarshal#IOCs:
FATURA-ES6580XD57845.pdf (MD5: 3DAA670013D39554ADE782B9CBDB11C7)
Drive32.exe (MD5: 9c6d5a7c7c32bfa49928ae4b5ae5bfcc)
65[.]38.120.211:57011
hxxps[://]b712317e-f362-40fa-8602-70f5d6130b07-00-3029or8kpfeuc[.]spock[.]repl[.]co/Portgues[.]PHP
hxxps[://]www[.]mediafire[.]com/file_premium/iientwhbblohwbp/Factura_FA_45_09_2024_pdf[.]reg/file
hxxps[://]3a88da1a86b3b964[.]ngrok[.]app/GraphicsDriver[.]png
Some very nice improvements going from PES 250.60 (Feb 2024) to PES 270.80.0.2 (Aug 2024).
FireStrike (Graphics) 7248 -> 8752
Endwalker 6834 -> 8890
Same system spec, but different OS (Win10 22H2 -> Win11 23H2).
#mtts80#moorethreads#pes#graphicsdriver#3dmark#FFXIV
Since then I managed to put the screen in landscape (by editing the GraphicsDriver key in the SYSTEM hive). Runs fine but I really question why I'm doing things like this haha
I was wandering why I couldn't even play Overwatch lagfree. Then I checked my Graphicsdriver...that I haven't Updated for 4 months...yeeeeaah no wonder 🙃