Swiss information security body warns of wave of “Emotet” banking trojan malware

Maria Nikolova

“Emotet/Heodo” usually infects the targeted computers via Word files in emails.

Switzerland’s Reporting and Analysis Centre for Information Assurance (MELANI) today posted a notice regarding malware that is increasingly targeting potential victims.

MELANI says it has observed a wave of instances of infections via “Emotet / Heodo” malware. Emotet is a banking trojan malware program which obtains financial information from the affected machine.

According to the Centre, criminals are sending emails with infected attachments (typically, a Word document). MELANI advises not to open the documents in emails from suspicious sources. However, these emails often mimic known sources. The rule of thumb is that in case of doubt one should call the sender to verify the email is a genuine one.

Once “Emotet” is installed, it may download ransomware on the affected machine.

In the event of an infection, MELANI recommends that you immediately disconnect the computer from all networks. It is essential that the system should be reinstalled following this and that all passwords should be changed.

After cleaning the computer, the back-up data (if available) can then be restored. If no data backup is available, it is advisable to retain the encrypted data and to save it so that it could possibly be decrypted at some later date in case a solution is found.

In all cases, MELANI recommends bringing the incident to the attention of the Cybercrime Coordination Unit Switzerland (CYCO) and reporting the case to the local police.

MELANI advises against paying a ransom because this will only strengthen the criminal infrastructure and thereby allow criminals to blackmail other victims. In addition, there is no guarantee that the key for decryption will be provided.

According to the latest malware stats from MELANI – those for the second half of 2018, Retefe continues to be one of the most significant banking Trojans in Switzerland. The malware is sent by email on behalf of well-known companies or institutions and targets both Windows and MacOS systems. The email attachments usually contain a malicious Word document, e.g. an purported invoice from an online shop, a delivery confirmation from a parcel supplier or information from the Federal Administration on contaminated drinking water.

Read this next

blockdag

BlockDAG Redefines Crypto Mining as Presale Tops $18.5M, Outshining Ethereum ETF & Dogecoin Dynamics

The recent approval of the first Ethereum ETF in Hong Kong underscores a significant advancement in the cryptocurrency’s mainstream acceptance. While Ethereum continues to attract institutional attention, the Dogecoin price prediction suggests a possible resurgence, despite its current undervaluation from past highs.

Digital Assets

Bitcoin halving is done: ViaBTC mines historic block 840K

The Bitcoin network has confirmed its fourth-ever halving block, mined by the cryptocurrency pool ViaBTC, according to data from Blockchain.com. This significant event in the Bitcoin ecosystem reduced the mining reward by half, a deflationary measure occurring approximately every four years to control the issuance of new bitcoins and curb inflation.

Retail FX

True Forex Funds now offers Match-Trader and cTrader platforms

Proprietary trading firm True Forex Funds today announced the launch of Match-Trader, a multi-asset trading platform developed by California-based FX technology provider Match-Trade Technologies.

Retail FX

CySEC hits FXORO parent with €360,000 fine

The Cyprus Securities and Exchange Commission (CySEC) has fined MCA Intelifunds, trading as FXORO, a total of €360,000 for multiple violations of the Cypriot investment laws.  

Digital Assets

Binance’s CZ in good mood ahead of sentencing, says partner

Yi He, co-founder of cryptocurrency giant Binance, has shared a positive outlook on the legal situation of the exchange’s former CEO, Changpeng Zhao. Zhao is currently awaiting a sentencing hearing scheduled for April 30 in the United States.

Fundamental Analysis, Tech and Fundamental

Global FX Market Summary: USD, FED, Middle East Tensions April 17 ,2024

The Federal Reserve walks a delicate line, addressing high inflation through a hawkish stance while avoiding stifling economic growth.

blockdag

‘Kaspa Killer’ BlockDAG Goes To The Moon With $18.5M Presale, Draws Attention from AVAX and Kaspa Investors

Discover how ‘Kaspa Killer’ BlockDAG’s $18.5M presale and 400% surge positions it as the fastest-growing crypto, amidst AVAX’s anticipated market rally and Kaspa’s performance gains.

Tech and Fundamental, Technical Analysis

Bitcoin Technical Analysis Report 19 April, 2024

Bitcoin cryptocurrency can be expected to rise further toward the next resistance level 67000.00, top of the previous minor correction ii.

Digital Assets

Crypto.com denies setback in South Korean market entry

Crypto.com has refuted reports from South Korean media that suggested a regulatory hurdle might delay its expansion in South Korea.

<