TechBriefly
  • Tech
  • Business
  • Crypto
  • Science
  • Geek
  • How to
  • About
    • About TechBriefly
    • Terms and Conditions
    • Privacy Policy
    • Contact Us
    • Languages
      • 中文 (Chinese)
      • Dansk
      • Deutsch
      • Español
      • English
      • Français
      • Nederlands
      • Italiano
      • 日本语 (Japanese)
      • 한국인 (Korean)
      • Norsk
      • Polski
      • Português
      • Pусский (Russian)
      • Suomalainen
      • Svenska
  • FAQ
    • Articles
No Result
View All Result
 Hot Topics:
  • Counter-Strike 2
  • Snapchat planets order
  • Microsoft AI copilot
  • ChatGPT plugins
  • Binance WOTD answers (Fan Tokens)
TechBriefly
No Result
View All Result
Home Tech Security

Emotet malware returns, watch your emails

by Eray Eliaçık
9 March 2023
in Security, Tech
Reading Time: 2 mins read
Emotet malware returns, watch your emails
Share on FacebookShare on Twitter

After a three-month break, the Emotet malware operation resumed blasting dangerous emails on Tuesday morning while it reestablished its infrastructure and infected devices worldwide. Email attachments containing infected versions of Microsoft Word and Excel are the primary vector for spreading the infamous Emotet malware. The Emotet DLL will be downloaded and loaded into memory when the user opens one of these documents with macros turned on.

When Emotet is installed, it will wait patiently for further instructions from its C&C server. Unfortunately, it returned.

Emotet malware 2023

The Emotet botnet has restarted sending emails, according to warnings from cybersecurity firm Cofense and Emotet-tracking organization Cryptolaemus.

🚨Emotet Awakens🚨 As of 1200UTC Ivan finally got E4 to send spam. We are seeing Red Dawn templates that are very large coming in at over 500MB. Currently seeing a decent flow of spam. Septet of payload URLs and ugly macros. Sample: https://t.co/fWZ8n3PlFi 1/3 pic.twitter.com/r5uuiECWnp

— Cryptolaemus (@Cryptolaemus1) March 7, 2023

According to confirmation from Cofense to BleepingComputer, the spam campaign kicked off at 7:00 AM ET, with relatively low volumes at the moment.

“The first email we saw was around 7am EST. Volume remains low at this time as they continue to rebuild and gather new credentials to leverage and address books to target.”

-Cofense

What does Emotet malware look like?

Below is an example of how the threat actors are changing tactics from the previous campaign by sending emails that appear to be invoices instead of reply chains.

Emotet malware returns, watch your emails

When you open one of these emails, you’ll usually find a ZIP file containing Word documents that are above 500 MB in size. By including unnecessary data, they increase file size and make detection by antivirus software more challenging.

A “Red Dawn” template from Emotet was used to prepare these.docx files, and readers must enable content before viewing them. We recommend that you do not click on it.

Do you know the Acer hack is confirmed? Hackers put 160GB of company data up for sale!

Microsoft saves the day

After recent changes made by Microsoft, the present method may not be very successful as Emotet rebuilds its network.

Downloaded Office documents from the Internet no longer contain macros by default as of July 2022.

Users will now be greeted with a warning explaining that macros have been disabled since the file’s origin cannot be verified when they open an Emotet document.

Emotet malware returns, watch your emails

With this feature, people who receive Emotet emails are less likely to accidentally enable macros unless they take active steps to do so.

Tags: Emotetfeaturedmalwarevirus

Related Posts

Luh Twizzy TikTok challenge causes stampede

Luh Twizzy TikTok challenge causes stampede

Insta360 Flow

Insta360 flow: Specs, price, and release date

AI whisperer jobs, aka prompt engineers, are on the rise

AI whisperer jobs, aka prompt engineers, are on the rise

Bing AI ads

The challenge of Bing AI ads is maximazing the user experience

POPULAR

Binance Word of the Day answers: Fan Tokens theme

What is Snapchat planets order?

What is Instagram direct message suggested list order (explained)?

What does setting interrogation succeeded mean?

How to hide retakes on BeReal?

RCM Loader for Nintendo Switch: What is it, how can you install?

How to hide blue ticks on WhatsApp?

Binance Word of the Day answers: Technical Analysis theme

Forza Horizon 5 Rally Adventure not working: How to fix it?

Should I update to iOS 16.4: Problems and new features

RSS News Republic

  • Pepsi new logo has been introduced and it is bold
  • The Last of Us building shaders error: How to fix it?
  • When is the next Steam sale: Dates and contents
  • Erin Darke and Daniel Radcliffe announce they are expecting a baby
  • What does IMY mean, and how to use it?

RSS Digital Report

  • Using Voice of the Customer for marketing and its benefits
  • Creating estimations for cost and organic traffic for your future SEO endeavors
  • Biggest issues plaguing the blockchain in 2023
  • What is the “Framing Effect” in marketing and how to use it?
  • How does in-house SEO compare to utilizing agencies and how to get started with it?

RSS Latest from LeaderGamer

  • Resident Evil 4 Remake system requirements – how many GB?
  • Wordle TR 1 Nisan 2023 günün cevabı
  • Wordle TR 30 Mart 2023 günün cevabı
  • Wordle TR 31 Mart 2023 günün cevabı
  • What are the Resident Evil 4 Remake difficulty levels?
TechBriefly

© 2021 TechBriefly is a Linkmedya brand.

  • Tech
  • Business
  • Science
  • Geek
  • How to
  • About
  • Privacy
  • Terms
  • Contact
  • FAQ
  • | Network Sites |
  • Digital Report
  • LeaderGamer
  • News Republic

Follow Us

No Result
View All Result
  • Tech
  • Business
  • Crypto
  • Science
  • Geek
  • How to
  • About
    • About TechBriefly
    • Terms and Conditions
    • Privacy Policy
    • Contact Us
    • Languages
      • 中文 (Chinese)
      • Dansk
      • Deutsch
      • Español
      • English
      • Français
      • Nederlands
      • Italiano
      • 日本语 (Japanese)
      • 한국인 (Korean)
      • Norsk
      • Polski
      • Português
      • Pусский (Russian)
      • Suomalainen
      • Svenska
  • FAQ
    • Articles