Skip to content

Explore Your Future with Alamo Colleges!

We offer what you need to achieve success. Come explore with us and find out why so many students have decided to call the Alamo Colleges the pathway to their future.

Not sure where to start? Our Career Assessment Tool can help.

 
Hours:
1819 N. Main St.
San Antonio TX, 78212
210-486-0559
Vertical_Bar 
Button - Go To Library  
Close
Login to ACES
Selected Log File:

Alamo PC User Name:
Alamo PC Password

Skip Navigation Links
Log MessageTypeAuthorPost DateExpiration Date

 

 

TLP: AMBER

 

TO: All MS-ISAC Members and Intel Partners

 

DATE: April 17, 2018

 

SUBJECT: Indicators Associated with Ongoing Cyber Espionage Campaign Targeting Global Industries Using the Kwampirs Malware – TLP: AMBER

 

The FBI has identified additional information regarding a Windows-based Server Message Block (SMB) polymorphic worm used with other tools to conduct a potential corporate espionage campaign known as the Kwampirs Remote Access Trojan (RAT). This FLASH provides local system indicators and recommended mitigations to assist in computer network defense efforts.

 

Two PDF files are attached with this message.

 

FLASH#: MC-000093-MW

 

24×7 Security Operations Center

Multi-State Information Sharing and Analysis Center (MS-ISAC)

Elections Infrastructure Information Sharing and Analysis Center (EI-ISAC)

31 Tech Valley Drive

East Greenbush, NY 12061

SOC@cisecurity.org - 1-866-787-4722

 

MS+EI emailsig@2x         

cid:image002.png@01D291DE.F838E090    cid:image003.png@01D291DE.F838E090   cid:image004.png@01D291DE.F838E090    cid:image005.png@01D291DE.F838E090

 

TLP: AMBER

Limited Disclosure, restricted to participants' organizations. Recipients may only share TLP: AMBER information with members of their own organization, and with clients or customers who need to know the information to protect themselves or prevent further harm.

http://www.us-cert.gov/tlp/

 

This message and attachments may contain confidential information. If it appears that this message was sent to you by mistake, any retention, dissemination, distribution or copying of this message and attachments is strictly prohibited. Please notify the sender immediately and permanently delete the message and any attachments.

. . . . .

Information Onlymrosado64/20/20184/27/2018 9:00:00 AM