POWERSPRITZ

POWERSPRITZPowerSpritz

Description

PowerSpritz is a Windows executable that hides both its legitimate payload and malicious PowerShell command using a non-standard implementation of the already rarely used Spritz encryption algorithm (see the Attribution section for additional analysis of the Spritz implementation). This malicious downloader has been observed being delivered via spearphishing attacks using the TinyCC link shortener service to redirect to likely attacker-controlled servers hosting the malicious PowerSpritz payload.

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Software
PGPSnippet Ransomware
Software
PowerWare
Software
PSCrypt
Software
PshCrypt
Software
PowerPunch
Software
POWERSOURCE
Sourced from MITRE ATT&CK Enterprise . Curated by Adam Lundqvist, SQUR.