Malware attacks are on the rise, but thankfully, so is the vigilance of individuals and IT MSPs.
What is TrickBot?
“TrickBot is a modular banking trojan that targets user financial information and acts as a dropper for other malware”, said the report. It is using man-in-the-browser attacks to steal the log-in credentials for finance-related sessions.
How it’s working
It makes sure it is not running in a “sandbox environment” and then attempts to disable your antivirus programs.
Once it has established itself on a device,
Redirection attacks send victims to fraudulent banking site replicas when they navigate to certain banking websites. This fake website is hosted on the cyber threat actor’s (CTA) malicious server and harvests the victim’s login information.
A server-side injection intercepts the response from a bank’s server, injects additional client-side code into the webpage, and can steal the victim’s banking credentials through form grabbing. Form grabbing records sensitive information typed into HTML forms, rather than capturing all keystrokes as with a keylogger.
What you should do
Familiarize yourself and your staff with common phishing tactics. Education is the ultimate end-user security practice. This is a necessity for network security.
For ITonDemand clients, spam filtering and endpoint malware security are in place to secure you from the majority of cyber attacks.
For more information on phishing, download our infographic below.
- If you think you have been infected, take the device offline as soon as possible. This protects you from any further data loss or further system/network corruption.
- Change all passwords from the infected device from a secure device.
- Contact the ITonDemand HelpDesk to see what further damage mitigation needs to be done.
For the full white paper issued by CIS, click here.
Download our infographic and learn how to identify a phishing scam when you see one.
Other Articles You Might Be Interested In:
When running a business, information technology (IT) can be complex, time-consuming, and essential. However finding, hiring, and training qualified IT staff members has become more difficult than ever. With long hiring periods due to the specialization of the role,...
Information technology (IT) is a crucial component of any enterprise, as it touches every digital aspect of a company ranging from computer systems to payment processing. Various software tools and know-how are needed to keep IT architecture operational, whether using...
1423 Powhatan St
Alexandria, VA 22314
233 SW 3rd St
Ocala, FL 34471
N Laurel Park Dr Ste 441
Livonia, MI 48152
1924 Baltic Way #114
Ferndale, WA 98248