Skip to content

Malware

Valak

aka Valek

According to PCrisk, Valak is malicious software that downloads JScript files and executes them.

Valak, also known as Valek, is a JavaScript malware family.

Background

PCrisk states that Valak is malware that retrieves JScript files and runs them, with the subsequent outcome determined by whatever those executed JScript files do. The operators behind Valak most likely intend to trigger chain infections, using it as a vehicle to spread additional malware.

According to research, Valak arrives mainly through spam campaigns, though in some instances it lands on systems already compromised by malware such as Ursnif (also known as Gozi).


Source: Malpedia (Fraunhofer FKIE).