BitRAT Malware Spreading Via Unofficial Microsoft Windows Activators

This article has been indexed from

CySecurity News – Latest Information Security and Hacking Incidents

 

A new BitRAT malware distribution campaign is ongoing, targeting people who want to utilise unauthorised Microsoft licence activators to activate unlicensed Windows OS versions for free. 
BitRAT is a strong remote access trojan that can be purchased for as little as $20 (lifetime access) on cybercrime forums and dark web markets. As a result, each buyer has their own malware dissemination strategy, which may include phishing, watering holes, or trojanized software. Threat actors are delivering BitRAT malware as a Windows 10 Pro licence activator on webhards in a new BitRAT malware distribution campaign identified by AhnLab researchers. 
Webhards are popular online storage services in South Korea that receive a steady stream of visitors via direct download links posted on social media platforms or Discord. Threat actors are increasingly exploiting webhards to deliver malware due to their widespread use in the region. Based on some of the Korean characters in the code snippets and how it was distributed, the actor behind the current BitRAT campaign appears to be Korean. To use Windows 10, one must first purchase and activate a Microsoft licence. 
While there are ways to get Windows 10 for free, one must have a valid Windows 7 licence to do so. Those who don’t want to deal with licencing concerns or who don’t have a licence to upgrade frequently resort to pirating Windows 10 and using unapproved acti

[…]
Content was cut in order to protect the source.Please visit the source for the rest of the article.

Read the original article: