Rewterz penetration testing services help organizations determine if a cyber attacker can gain access to their critical assets while giving them detailed insights of the overall business impact of a cyber attack.
Before Rewterz got its start, the market was in dire need of a specialized and dedicated information security company. It was nearly impossible for businesses to find a trustworthy provider that could truly cover all of their bases. We wanted to meet this need, giving companies across the globe a chance to get ahead while knowing that their data is in good hands.
Rewterz penetration testing services help organizations determine if a cyber attacker can gain access to their critical assets while giving them detailed insights of the overall business impact of a cyber attack.
Before Rewterz got its start, the market was in dire need of a specialized and dedicated information security company. It was nearly impossible for businesses to find a trustworthy provider that could truly cover all of their bases. We wanted to meet this need, giving companies across the globe a chance to get ahead while knowing that their data is in good hands.
Medium
An Excel file discovered that purports to be a tax calculator from the Indian “Income Tax Department” but installs an xRAT Trojan. Once the Excel file is opened, if macros are enabled, base64-encoded data is downloaded, which will ultimately become an executable file that in turn downloads xRAT and other files. Once active, xRAT commences encrypted communications with its C&C server using TCP port 63989. The Portmap service is utilized to hide the actual C&C server address.
Financial loss
Malware Hash (MD5/SHA1/SH256)