Geeks for your information
Emotet is Back and Spamming Again - Printable Version

+- Geeks for your information (https://www.geeks.fyi)
+-- Forum: News (https://www.geeks.fyi/forumdisplay.php?fid=105)
+--- Forum: Privacy & Security News (https://www.geeks.fyi/forumdisplay.php?fid=107)
+--- Thread: Emotet is Back and Spamming Again (/showthread.php?tid=8377)



Emotet is Back and Spamming Again - silversurfer - 17 September 19

Quote:A notorious botnet has begun sending out spam again after a several month hiatus, which could spend bad news for organizations around the world.
 
Emotet has been dormant for around four months, but starting pumping out spam on Monday morning, with phishing emails sent in German, Polish, English and Italian, according to Malwarebytes.
The firm said that an uptick in command-and-control (C2) server activity forewarned it of a return to the front line for the infamous botnet.
 
In this new campaign, users are tricked into opening an attached document and enabling macros, triggering a PowerShell command which will try to download Emotet from compromised sites, often those running WordPress.
 
“Once installed on the endpoint, Emotet attempts to spread laterally, in addition to stealing passwords from installed applications. Perhaps the biggest threat, though, is that Emotet serves as a delivery vector for more dangerous payloads, such as ransomware,” warned Malwarebytes.

Read more here: https://www.infosecurity-magazine.com/news/emotet-is-back-and-spamming-again/


RE: Emotet is Back and Spamming Again - silversurfer - 24 September 19

Emotet Tries to Infect You By Claiming It's Snowden's Book
Quote:Emotet has started a new spam campaign that pretends to be a scanned copy of Edward Snowden's new book. Unsuspecting users who open the attachment and enable its content will find that they have become infected with Emotet, most likely Trickbot, and possibly other malware.

Read more here: https://www.bleepingcomputer.com/news/security/emotet-tries-to-infect-you-by-claiming-its-snowdens-book/