Mail Attachment Builds Ransomware Downloader from Super Mario Image

LASER_oneXM

Level 37
Thread author
Verified
Top Poster
Well-known
Feb 4, 2016
2,520
A malicious spreadsheet has been discovered that builds a PowerShell command from individual pixels in a downloaded image of Mario from Super Mario Bros. When executed, this command will download and install malware such as the GandCrab Ransomware and other malware.
This attack works when recipients receive an email targeting people from Italy that pretends to be payment notices


Steganographic attacks are not new and are being used more often to avoid detection by security programs. Just recently a malvertising campaign was discovered by Malwarebytes that was utilizing steganography to install a payload hidden in advertising images.
 

IkariGradius

Level 2
Verified
Jan 17, 2019
70
Super Ransomware Bros: it sounds like a platformer but is actually a Minecraft-like sandbox game... cause there's so much mining. On your CPU. :ROFLMAO:

Okay i'm gone, joke's over... :p
 
  • Like
Reactions: spaceoctopus

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top