Swiss information security body warns of wave of “Emotet” banking trojan malware

Maria Nikolova

“Emotet/Heodo” usually infects the targeted computers via Word files in emails.

Switzerland’s Reporting and Analysis Centre for Information Assurance (MELANI) today posted a notice regarding malware that is increasingly targeting potential victims.

MELANI says it has observed a wave of instances of infections via “Emotet / Heodo” malware. Emotet is a banking trojan malware program which obtains financial information from the affected machine.

According to the Centre, criminals are sending emails with infected attachments (typically, a Word document). MELANI advises not to open the documents in emails from suspicious sources. However, these emails often mimic known sources. The rule of thumb is that in case of doubt one should call the sender to verify the email is a genuine one.

Once “Emotet” is installed, it may download ransomware on the affected machine.

In the event of an infection, MELANI recommends that you immediately disconnect the computer from all networks. It is essential that the system should be reinstalled following this and that all passwords should be changed.

After cleaning the computer, the back-up data (if available) can then be restored. If no data backup is available, it is advisable to retain the encrypted data and to save it so that it could possibly be decrypted at some later date in case a solution is found.

In all cases, MELANI recommends bringing the incident to the attention of the Cybercrime Coordination Unit Switzerland (CYCO) and reporting the case to the local police.

MELANI advises against paying a ransom because this will only strengthen the criminal infrastructure and thereby allow criminals to blackmail other victims. In addition, there is no guarantee that the key for decryption will be provided.

According to the latest malware stats from MELANI – those for the second half of 2018, Retefe continues to be one of the most significant banking Trojans in Switzerland. The malware is sent by email on behalf of well-known companies or institutions and targets both Windows and MacOS systems. The email attachments usually contain a malicious Word document, e.g. an purported invoice from an online shop, a delivery confirmation from a parcel supplier or information from the Federal Administration on contaminated drinking water.

Read this next

Market News

Navigating Yen Depreciation and Euro Resilience in Global Markets

Amidst the persistent depreciation of the Japanese yen against the US dollar, pressure mounts on Japanese policymakers to translate their verbal assurances into tangible actions.

Digital Assets

El Salvador refutes rumors of Bitcoin wallet hack

Chivo Wallet, El Salvador’s official cryptocurrency wallet, has dismissed reports of a hack involving its software source code and the data of over 5 million users associated with its KYC (Know Your Customer) procedures.

blockdag

Best Crypto to Buy: BlockDAG Presale Hits $20.1M Following Moon-Shot Keynote Teaser as Dogecoin & Shiba Inu Prices Plummet

This landmark achievement sets it apart in the cryptocurrency landscape, where traditional favorites like Dogecoin and Shiba Inu are witnessing a price decline.

Digital Assets

MetaMask developer sues SEC over regulatory overreach

Ethereum ecosystem developer Consensys Software has filed a lawsuit against the U.S. Securities and Exchange Commission (SEC), challenging the agency’s regulatory actions concerning Ethereum and its related services.

Institutional FX

Tradeweb pulls in $408.7 million in Q1 revenue amid record trading volumes

Tradeweb Markets Inc. (NASDAQ: TW) has just announced its financial results for the first quarter of 2024, which showed a robust performance for the three months through March.

Institutional FX

BGC Group valued at $667 million following investment by major banks

BGC Group announced that its exchange platform, FMX Futures, is now valued at $667 million after receiving investments from a notable consortium of financial institutions.

blockdag

Transforming a Bankrupt Investor into a Cryptocurrency Giant; Can BlockDAG Replicate Ethereum’s Meteoric Rise With 30,000x Predictions?

The realm of cryptocurrency investing presents a thrilling blend of challenges and opportunities. The legendary gains by early Ethereum investors serve as a powerful lure for those seeking the next major breakthrough.

Digital Assets

SEC delays decision on spot bitcoin options ETFs

The U.S. Securities and Exchange Commission (SEC) has postponed its decision on whether to authorize options trading on spot bitcoin ETFs, extending the review period by an additional 45 days. The new deadline for the SEC’s decision is now set for May 29, 2024.

Market News, Tech and Fundamental, Technical Analysis

Solana Technical Analysis Report 25 April, 2024

Solana cryptocurrency can be expected to fall further toward the next support level 130.00, target price for the completion of the active impulse wave (i).

<