Gootkit Malware Campaign Expands SEO Poisoning To Target Australian Healthcare Sector
Category: Malware Campaign | Industries: Healthcare, Legal | Level: Tactical | Source: Trend Micro
Trend Micro researchers identified the distribution of Gookit malware loader through search engine optimization (SEO) poisoning has expanded to target Australian healthcare organizations. As revealed by Trend Micro in their analysis, the samples examined "targeted the keywords hospital, health, medical, and enterprise agreement," paired with Australian city names. Also targeted were names of specific healthcare providers across Australia. While continuously targeting the legal sector with the keyword "agreement, Gootkit loader has recently expanded its assaults to the healthcare industry." Users tricked in the attack, are navigated to an infected WordPress blog site, tricking them into downloading a malicious ZIP file.
- Malicious File Delivering Malware
Anvilogic Use Cases:
- Compressed File Execution
- Rare Remote Thread
- SharpHound Keywords