The financially motivated threat actor, FIN7, has been observed utilizing malicious websites to impersonate reputable brands. This tactic serves as a vehicle for delivering malicious payloads such as NetSupport RAT and DiceLoader, which represent subsequent stages in the infection chain.
