DotRunpeX

General News

Summary

Details about the threat were revealed in a report by the security researcher DotRunpeX is said to be currently in active development and typically arrives as a second-stage malware in the infection chain. One of the methods that DotRunpeX has been observed to use is leveraging malicious Google Ads on search result pages to lure unsuspecting users into clicking on copycat websites that host Trojanized installers. Recent analysis of DotRunpeX has revealed that the malware has been using an extra layer of obfuscation by using the KoiVM virtualizing protector in the latest artifacts that were first spotted in October 2022. Infostealers, as the name suggests, are designed to steal sensitive information such as login credentials, credit card details, and other personal data. Infostealers are often delivered through email attachments, malicious links, or bundled with other software, and can remain undetected for long periods of time, allowing attackers to continuously collect data.

Classifications

industries
Entertainment
applications
Customer Service & Support

AskAI Classifications

Labels
Cybersecurity Software Anti-Malware Software SaaS Security

Linked Companies

EnigmaSoft
$1M to $5M