Lumma/Amadey: fake CAPTCHAs want to know if you’re human
SecureList
OCTOBER 29, 2024
In the screenshot below, the stealer file is named 0Setup.exe: Contents of the malicious archive After launching, 0Setup.exe runs the legitimate BitLockerToGo.exe utility, normally responsible for encrypting and viewing the contents of removable drives using BitLocker.
Let's personalize your content