Emotet: prompts you to upgrade Word

The Emotet botnet has begun to ένα νέο κακόβουλο συνημμένο που προσποιείται ότι είναι ένα from Windows Update telling you to upgrade Word.

Emotet is a malicious που εξαπλώνεται μέσω ανεπιθύμητων μηνυμάτων ηλεκτρονικού ταχυδρομείου που περιέχουν κακόβουλα έγγραφα Word ή Excel. Αυτά τα έγγραφα χρησιμοποιούν μακροεντολές για την λήψη και εγκατάσταση του Emotet Trojan στον υπολογιστή του θύματος. Το trojan χρησιμοποιεί τον υπολογιστή για την αποστολή ανεπιθύμητων μηνυμάτων ηλεκτρονικού ταχυδρομείου και τελικά οδηγεί σε επίθεση ransomware στο of the victim.

After a brief hiatus, the malware Emotet returned to service on October 14 and began sending malicious spam content worldwide.

These spam campaigns pretend to be invoices, shipment, information about COVID-19, information about President Trump's health, resumes or purchase orders.

These junk e-mail attachments include malicious Word (.doc) attachments or download links.

When opened, these attachments will prompt the user to "Enable Content" to run malicious macros that will install the malicious Emotet software on the computer.

Upon its return, Emotet released a new template that pretends to be a message from Windows Update stating that Microsoft Word should be updated before viewing the document.

To update Word, the message tells the user to click the Enable Editing and Enable Content buttons, which will trigger malicious macros,

These malicious macros will download and install the malicious Emotet software onto the victim's computer, as shown below.

Emotet is now considered to be the most common malware. It is also particularly dangerous as it installs other malicious programs such as Trickbot and QBot on the victim's computer.

While TrickBot and QBot have their own malicious activity, such as stealing passwords, banking information and various other information, they also often lead to ransomware Conti (TrickBot) or ProLock (QBot) ransomware attacks.

So it is vital that you recognize the malicious document templates used by Emotet so that you do not accidentally become infected.

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.082 registrants.

Written by giorgos

George still wonders what he's doing here ...

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).