⤷ Title: SEQRITE Labs Uncovers “CAPI Backdoor” Campaign Targeting Russia’s Automobile and E-Commerce Sectors
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 20 Oct 2025 00:36:20 +0000
════════════════════════
⌗ Tags: #Malware #anti_vm #Banking Trojan #CAPI #Credential Theft #LNK File #russia #Scheduled Task #spear_phishing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 20 Oct 2025 00:36:20 +0000
════════════════════════
⌗ Tags: #Malware #anti_vm #Banking Trojan #CAPI #Credential Theft #LNK File #russia #Scheduled Task #spear_phishing
Daily CyberSecurity
SEQRITE Labs Uncovers “CAPI Backdoor” Campaign Targeting Russia’s Automobile and E-Commerce Sectors
SEQRITE exposed CAPI, a .NET trojan targeting Russian FinTech with malicious LNK resumes. It uses rundll32 for execution and a hidden "Security" scheduled task for persistence.