Melcoz — Malware Profile
Melcoz is a banking trojan family built from the open source tool Remote Access PC. Melcoz was first observed in attacks in Brazil and since 2018 has spread to Chile, Mexico, Spain, and Portugal.
MITRE ATT&CK techniques (12)
- T1027.002 Software Packing
- T1059.005 Visual Basic
- T1059.010 AutoHotKey & AutoIT
- T1105 Ingress Tool Transfer
- T1115 Clipboard Data
- T1185 Browser Session Hijacking
- T1204.001 Malicious Link
- T1218.007 Msiexec
- T1555.003 Credentials from Web Browsers
- T1565.002 Transmitted Data Manipulation
- T1566.002 Spearphishing Link
- T1574.001 DLL