Description
[Melcoz](https://attack.mitre.org/software/S0530) is a banking trojan family built from the open source tool Remote Access PC. [Melcoz](https://attack.mitre.org/software/S0530) was first observed in attacks in Brazil and since 2018 has spread to Chile, Mexico, Spain, and Portugal.(Citation: Securelist Brazilian Banking Malware July 2020)
External References
Techniques Used by This Malware
- T1027.002 — Software Packing
- T1059.005 — Visual Basic
- T1059.010 — AutoHotKey & AutoIT
- T1105 — Ingress Tool Transfer
- T1115 — Clipboard Data
- T1185 — Browser Session Hijacking
- T1204.001 — Malicious Link
- T1218.007 — Msiexec
- T1555.003 — Credentials from Web Browsers
- T1565.002 — Transmitted Data Manipulation
- T1566.002 — Spearphishing Link
- T1574.001 — DLL