Alerta CERT-RO: Mai mulți români au primit acest virus periculos pe e-mail

O serie de entităţi publice şi private din România au fost puternic afectate de valuri succesive de atacuri cu malware-ul de tip bancar Emotet, în ultimele luni, informează Centrul Naţional de Răspuns la Incidente de Securitate Cibernetică (CERT-RO), într-o alertă publicată, joi, pe propria pagină de internet.

Emotet este un malware de tip bancar, ce infectează computerele care folosesc sistemul de operare Microsoft Windows, prin intermediul link-urilor sau al ataşamentelor malspam infectate (ex.: PDF, DOC etc.). Malware-ul este un troian cunoscut, descoperit în urmă cu aproximativ şase ani, mai întâi în Europa şi mai apoi în SUA.

Conform experţilor CERT-RO, virusul se activează pe computerul unui utilizator cu intenţia de a fura date financiare.

„CERT-RO a observat în ultimele luni o persistenţă, iar în ultimul timp o creştere a volumului atacurilor care vizează infectarea cu malware-ul de tip bancar Emotet. Atacurile nu au o ţintă clară prestabilită şi vizează atât utilizatori obişnuiţi, cât şi instituţii publice sau organizaţii private. Ce face Emotet? Vorbim despre un troian care încearcă să extragă detalii financiare de pe dispozitivele infectate. Este important de ştiut fapul că acest tip de atac poate fi evitat dacă se respectă o igienă de securitate minimală. Pentru că atacul se propagă prin e-mail, utilizatorii trebuie să fie vigilenţi, să verifice în sursa mesajului adresa exactă de unde provine, iar dacă încă au suspiciuni să verifice informaţia cu expeditorul. Totodată, utilizatorii trebuie să evite accesarea link-urilor şi ataşamentelor din mail-urile suspecte, înainte de a le scana cu o soluţie de securitate. În acelaşi timp, subliniem importanţa adoptării unei rutine de securitate care cuprinde actualizarea frecventă a sistemului de operare şi a software-ului folosit pe dispozitive, efectuarea unor back-up-uri (copii de siguranţă) a fişierelor şi configurarea corectă a instrumentelor cu care ne conectăm la internet (ex: router). În cazul în care au fost infectaţi, să se adreseze CERT-RO la numărul de urgenţă 1911 sau adresa de e-mail [email protected]”, a declarat, pentru AGERPRES, Mihai Rotariu, purtător de cuvânt al CERT-RO.

În acest moment, există trei modalităţi prin care se poate infecta PC-ul/reţeaua cu acest malware de tip bancar, în toate cazurile pornindu-se de la un mail tip spam: e-mail de tip spam, cu un ataşament ce conţine macro-uri care descarcă malware; e-mail de tip spam cu ataşament ce conţine macro-uri, dar fişierul maliţios este inclus într-o arhivă cu parolă (parola este comunicată în textul mail-ului, pentru ca victima să îl poată dezarhiva); e-mail de tip spam care are inclus în text un link, care odată accesat va ajunge să infecteze dispozitivul cu malware.

Pe acest fond, CERT-RO are şi câteva recomandări pentru evitarea atacurilor cu Emotet.

„Fiţi atenţi atunci când verificaţi e-mail-urile primite, în special cele care conţin ataşamente! Emotet este încă activ, se propagă prin intermediul e-mail-ului şi vizează deopotrivă persoane fizice, instituţii publice sau companii private. În cazul în care aveţi suspiciuni legate de veridicitatea informaţiei din mail, verificaţi autenticitatea informaţiilor oferite de presupusul expeditor direct cu acesta, utilizând alt canal de comunicare (preferabil telefonul). Înainte de a face o acţiune care ar putea dăuna, scanaţi cu o soluţie de securitate instalată pe dispozitiv sau cu una disponibilă gratis online (ex: Virus Total) link-urile sau ataşamentele suspecte din căsuţa dvs. de mail. Nu uitaţi să aplicaţi la timp update-urile pentru aceste soluţii”, subliniază experţii.

O altă informaţie importantă este aceea că scanarea cu antivirus nu este suficientă pentru a preveni infectate terminalului cu Emotet. Malware-ul nu este uşor de identificat şi interceptat, deoarece eludează de multe ori soluţiile antivirus convenţionale.

„Este un virus polimorf, codul se schimbă uşor pentru a evita detectarea de către scanerele de malware bazate pe semnături. De asemenea, Emotet detectează când rulează pe o maşină virtuală. Deîndată ce este înregistrat un mediu sandbox, programul intră în modul stand-by şi nu ia nicio acţiune dăunătoare în acel moment. Utilizatorilor li se recomandă să implementeze filtre la gateway-ul de e-mail pentru a înlătura e-mail-urile cu indicatori cunoscuţi de spam sau malware şi pentru a bloca adresele IP suspecte din firewall. E-mailurile suspecte trebuie raportate departamentului IT pentru izolare şi investigare. Verificaţi periodic regulile contului de e-mail, care pot fi setate pentru redirecţionarea automată a tuturor mesajelor, ceea ce ar putea duce la o scurgere de date, dacă există o infecţie”, se arată în informarea CERT-RO.

În acelaşi timp, pentru a se proteja eficient împotriva Emotet, utilizatorilor le este recomandat să se concentreze în principal pe poarta principală de acces a malware-ului şi anume comunicarea prin e-mail. Totodată, orice actualizare de securitate implementată trebuie instalată imediat pentru sistemele de operare, programele antivirus, browserele web, clienţii de e-mail şi programele de tip Office.

La fel, este imperios necesară operaţiunea de backup regulat al datelor, în special a celor esenţiale, iar accesul la reţeaua companiei ar trebui monitorizat continuu de către cei responsabili din Departamentele IT, deoarece astfel se poate determina în timp util dacă a apărut o infecţie cu Emotet.

În plus, se recomandă dezactivarea serviciilor inutile, inclusiv a Remote Desktop Protocol (RDP), tehnologia care ne permite lucrul de la distanţă, precum şi asigurarea routerelor, întrucât Emotet poate exploata reţele Wi-Fi nesigure pentru a răspândi malware-ul.

Sursa: Realitatea Financiara

401 COMENTARII

  1. It’s difficult to find educated people in this particular subject, however, you seem like you know what you’re talking about! Thanks|

  2. First of all I would like to say great blog! I had a quick question in which I’d like to ask if you don’t mind. I was curious to find out how you center yourself and clear your head prior to writing. I’ve had difficulty clearing my thoughts in getting my ideas out there. I truly do take pleasure in writing but it just seems like the first 10 to 15 minutes are generally wasted simply just trying to figure out how to begin. Any ideas or hints? Thanks!|

  3. A person necessarily help to make severely articles I would state. That is the very first time I frequented your web page and up to now? I surprised with the analysis you made to create this actual put up amazing. Fantastic activity!|

  4. I do accept as true with all the ideas you have offered for your post. They’re very convincing and can certainly work. Nonetheless, the posts are very brief for beginners. May just you please prolong them a bit from subsequent time? Thank you for the post.|

  5. I’ve been exploring for a little for any high quality articles or blog posts in this sort of space . Exploring in Yahoo I ultimately stumbled upon this site. Studying this info So i’m happy to convey that I’ve a very just right uncanny feeling I discovered just what I needed. I such a lot without a doubt will make sure to do not disregard this site and give it a glance regularly.|

  6. Hey I know this is off topic but I was wondering if you knew of any widgets I could add to my blog that automatically tweet my newest twitter updates. I’ve been looking for a plug-in like this for quite some time and was hoping maybe you would have some experience with something like this. Please let me know if you run into anything. I truly enjoy reading your blog and I look forward to your new updates.|

  7. I am no longer certain the place you’re getting your info, however great topic. I needs to spend some time finding out more or understanding more. Thank you for magnificent info I used to be on the lookout for this info for my mission.|

  8. A person essentially assist to make critically articles I might state. This is the first time I frequented your website page and so far? I surprised with the research you made to make this particular submit extraordinary. Magnificent process!|

  9. each time i used to read smaller articles or reviews which as well clear their motive, and that is also happening with this paragraph which I am reading at this place.|

  10. This is really interesting, You’re a very skilled blogger. I’ve joined your rss feed and look forward to seeking more of your magnificent post. Also, I have shared your site in my social networks!|

  11. Have you ever heard of second life (sl for short). It is basically a online game where you can do anything you want. SL is literally my second life (pun intended lol). If you would like to see more you can see these sl websites and blogs

  12. Have you ever heard of second life (sl for short). It is basically a online game where you can do anything you want. sl is literally my second life (pun intended lol). If you want to see more you can see these Second Life articles and blogs

  13. Have you ever heard of second life (sl for short). It is basically a game where you can do anything you want. SL is literally my second life (pun intended lol). If you want to see more you can see these Second Life authors and blogs

  14. Have you ever heard of second life (sl for short). It is essentially a online game where you can do anything you want. Second life is literally my second life (pun intended lol). If you would like to see more you can see these sl websites and blogs

  15. Have you ever heard of second life (sl for short). It is essentially a online game where you can do anything you want. sl is literally my second life (pun intended lol). If you would like to see more you can see these Second Life articles and blogs

  16. Have you ever heard of second life (sl for short). It is essentially a game where you can do anything you want. sl is literally my second life (pun intended lol). If you want to see more you can see these Second Life articles and blogs

  17. Have you ever heard of second life (sl for short). It is basically a online game where you can do anything you want. SL is literally my second life (pun intended lol). If you want to see more you can see these sl articles and blogs

  18. Have you ever heard of second life (sl for short). It is essentially a online game where you can do anything you want. sl is literally my second life (pun intended lol). If you would like to see more you can see these Second Life websites and blogs

  19. Have you ever heard of second life (sl for short). It is essentially a video game where you can do anything you want. Second life is literally my second life (pun intended lol). If you want to see more you can see these Second Life websites and blogs

  20. Have you ever heard of second life (sl for short). It is basically a video game where you can do anything you want. Second life is literally my second life (pun intended lol). If you would like to see more you can see these sl articles and blogs

  21. Have you ever heard of second life (sl for short). It is basically a game where you can do anything you want. sl is literally my second life (pun intended lol). If you want to see more you can see these sl authors and blogs

  22. Have you ever heard of second life (sl for short). It is essentially a video game where you can do anything you want. Second life is literally my second life (pun intended lol). If you want to see more you can see these Second Life authors and blogs

  23. Have you ever heard of second life (sl for short). It is basically a video game where you can do anything you want. Second life is literally my second life (pun intended lol). If you want to see more you can see these Second Life authors and blogs

  24. Have you ever heard of second life (sl for short). It is essentially a video game where you can do anything you want. Second life is literally my second life (pun intended lol). If you would like to see more you can see these second life authors and blogs

  25. Have you ever heard of second life (sl for short). It is basically a online game where you can do anything you want. Second life is literally my second life (pun intended lol). If you want to see more you can see these second life authors and blogs

  26. I think this is among the most vital info for me. And i’m glad reading your article. But want to remark on few general things, The web site style is wonderful, the articles is really excellent : D. Good job, cheers

  27. Hello Dear, are you actually visiting this website regularly, if so after that you will absolutely get nice experience.|

  28. Aw, this was an extremely nice post. Finding the time and actual effort to produce a good article… but what can I say… I hesitate a whole lot and never manage to get nearly anything done.

  29. Great write-up, I’m regular visitor of one’s blog, maintain up the excellent operate, and It’s going to be a regular visitor for a long time.

  30. Its like you read my mind! You appear to know a lot about this, like you wrote the book in it or something. I think that you could do with a few pics to drive the message home a little bit, but instead of that, this is magnificent blog. A fantastic read. I’ll definitely be back.

  31. Sorry for the huge review, but I’m really loving the new Zune, and hope this, as well as the excellent reviews some other people have written, will help you decide if it’s the right choice for you.

  32. I do agree with all of the ideas you’ve presented in your post. They’re really convincing and can definitely work. Still, the posts are too quick for novices. May you please extend them a bit from next time? Thanks for the post.

  33. Good write-up, I¡¦m normal visitor of one¡¦s blog, maintain up the nice operate, and It’s going to be a regular visitor for a long time.

  34. Thanks for sharing your thoughts. I really appreciate your efforts and I am waiting for your next post thanks once again.

  35. I read this article completely on the topic of the resemblance of most up-to-date and earlier technologies, it’s awesome article.

  36. What i don’t understood is actually how you are no longer actually a lot more neatly-appreciated than you might be now. You are so intelligent. You realize thus significantly in the case of this matter, made me in my opinion imagine it from a lot of numerous angles. Its like men and women are not involved except it¡¦s something to do with Woman gaga! Your own stuffs nice. All the time deal with it up!

  37. My family all the time say that I am killing my time here at net, except I know I am getting familiarity all the time by reading such fastidious articles.

  38. I just wanted to make a word to appreciate you for the splendid tactics you are giving at this website. My time-consuming internet look up has now been rewarded with excellent suggestions to share with my visitors. I would point out that most of us readers are rather lucky to exist in a fantastic site with very many lovely individuals with valuable ideas. I feel pretty grateful to have used your site and look forward to tons of more brilliant moments reading here. Thanks a lot once more for everything.

  39. Nice post. I used to be checking constantly
    this weblog and I am impressed! Very helpful information specifically the final phase 🙂 I handle such information much.

    I used to be seeking this particular info for a long time.
    Thanks and best of luck.

  40. If you are going for most excellent contents like me,
    just visit this web page every day since it presents quality contents, thanks

  41. I truly love your blog.. Pleasant colors & theme. Did
    you create this amazing site yourself? Please reply back as I’m trying to create my own personal site and would love
    to know where you got this from or just what the theme is called.
    Thank you!

  42. Thank you a bunch for sharing this with all of us you really
    understand what you’re speaking about! Bookmarked.
    Please also consult with my site =). We can have a link alternate
    contract among us

  43. Hey! I know this is kinda off topic but I’d figured I’d ask.
    Would you be interested in trading links or maybe
    guest authoring a blog article or vice-versa? My website addresses a lot
    of the same topics as yours and I think we could greatly benefit from each other.
    If you happen to be interested feel free to shoot me an email.

    I look forward to hearing from you! Terrific blog by the
    way! asmr https://app.gumroad.com/asmr2021/p/best-asmr-online asmr

  44. Hey! I could have sworn I’ve been to this blog before but
    after checking through some of the post I realized
    it’s new to me. Anyhow, I’m definitely delighted I found it
    and I’ll be bookmarking and checking back often! quest bars http://bit.ly/3jZgEA2 quest
    bars

  45. Terrific post however , I was wondering if you could write a litte more on this topic? I’d be very thankful if you could elaborate a little bit more. Cheers!|

  46. It’s nearly impossible to find educated people about this topic, but you sound like you know what you’re talking about! Thanks|

  47. Hi there, I discovered your blog by means of Google
    while looking for a related subject, your website came up, it appears good.
    I’ve bookmarked it in my google bookmarks.
    Hello there, simply turned into alert to your blog thru Google, and located that it
    is really informative. I’m going to watch out for brussels.

    I’ll be grateful for those who proceed this in future.
    Lots of other folks shall be benefited from your writing.
    Cheers!

  48. I’m now not certain the place you’re getting your information, but
    good topic. I needs to spend a while learning more or working out more.
    Thanks for wonderful information I used to be searching for this
    information for my mission.

LĂSAȚI UN MESAJ

Please enter your comment!
Numele tau