Read the Beforeitsnews.com story here. Advertise at Before It's News here.
Profile image
By Due Diligence
Contributor profile | More stories
Story Views
Now:
Last hour:
Last 24 hours:
Total:

Alert: World's Biggest Botnet Sends 12.5 Million Ransomware (Video)

% of readers think this story is Fact. Add your two cents.


 

 

11-18-17

 

The Scarab malware is being distributed by Necurs, the internet’s largest email spam botnet, which has been used in a number of previous online onslaughts. Within the first six hours of the attack 12.5 million emails had been distributed, with more than two million messages being sent out per hour at its height.


World’s Biggest Botnet Sends 12.5 Million Emails Containing Ransomware Able to Destroy Your Computer

Source Jim Yackel


World’s biggest botnet sends 12.5 MILLION emails containing ransomware that could destroy your computer: Here’s how to spot one

  • Scarab malware is being sent out by Necurs, the largest email spam botnet ever
  • Infected files are hidden in fake scanned documents that appear to be legitimate
  • Once an attached 7zip is opened, malware takes over your computer and files
  • A text file which then pops up threatens to erase them if the ransom isn’t paid

Millions of computers are at risk of infection by a virulent spam attack that threatens to destroy your files, unless you pay a Bitcoin ransom.

The Scarab malware is being distributed by Necurs, the internet’s largest email spam botnet, which has been used in a number of previous online onslaughts.

Within the first six hours of the attack 12.5 million emails had been distributed, with more than two million messages being sent out per hour at its height.

Security experts from anti-virus software company Forcepoint, based in Austin, Texas, were among the first to raise the alarm.  

They found infected files were hidden in fake scanned documents which, according to the subject line of affected emails, were supposedly created using printers from a number of reputable firms.

This includes Lexmark, HP, Canon and Epson, giving the scam messages an appearance of legitimacy at first glance.

Once an attached 7zip is downloaded and opened, the malware takes over your computer and files, threatening to erase them if the ransom isn’t paid.

Top domain countries targeted in the attack are the US, UK and Australia, followed by France and Germany.

Despite its wide distribution, Scarab is detected by most anti-malware software, which means you should receive a warning about the infected files. 

Windows users unlucky enough to have been infected may be able to remove the malware by installing running anti-malware software in safe mode, although this is not guaranteed 

Writing on the firm’s blog, security researchers Ben Gibney and Roland Dela Paz said: ‘The payload itself, Scarab, is a relatively new ransomware family that was discovered in June.

‘Once installed it proceeds to encrypt files.

‘A ransom note with the filename “If You Want To Get All Your Files Back, Please Read This.Txt” is dropped within each affected directory. 

Once an attached 7zip is downloaded and opened, the malware takes over your computer and files, threatening to erase them if the ransom isn’t paid. This image shows the ransom demand that appears after opening the attachment 

HOW DOES A BOTNET WORK?

A botnet is a collection of internet-connected devices, which may include PCs, servers, mobile devices and internet of things devices that are infected and controlled by a common type of malware.

Users are often unaware of a botnet infecting their system. 

Once a botnet’s owner is in control of your computer, they can use your machine in combination with others, over a network called a botnet, to carry out other nefarious tasks.

There are a number of common tasks executed by botnets including:

- Using your machine’s power to assist in distributed denial-of-service (DDoS) attacks to shut down websites. 

- Emailing spam out to millions of Internet users.

- Generating fake Internet traffic on a third-party website for financial gain. 

- Replacing banner ads in your web browser specifically targeted at you. 

- Pop-ups ads designed to get you to pay for the removal of the botnet through a fake anti-spyware package.

‘Unusually, the note does not specify the amount being demanded, instead simply stating that “the price depends on how fast you write to us”. 

‘This note is also automatically opened by the malware after execution.’ 

A botnet is a collection of internet-connected devices, which may include PCs, servers, mobile devices and internet of things devices that are infected and controlled by a common type of malware. 

Users are often unaware of a botnet infecting their system.

Once a botnet’s owner is in control of your computer, they can use your machine in combination with others, over a network called a botnet, to carry out other nefarious tasks.

There are a number of common tasks executed by botnets.

This can include using your machine’s power to assist in distributed denial-of-service (DDoS) attacks to shut down websites. 

The can also be used to: email spam out to millions of internet users; generate fake Internet traffic on a third-party website for financial gain; replace banner ads in your web browser specifically targeted at you; enable pop-ups ads designed to get you to pay for the removal of the botnet through a fake anti-spyware package.

The biggest giveaway of a malware email is that they are sent without being asked for, so it is always best practice to never open an unsolicited attachment.

Archive files, like the 7zip format used in the attack, are also another warning sign of potentially dangerous content.

These types of file can be used to try and bypass detection by anti-virus scans.

Manually scanning suspicious emails with anti-virus and anti-malware software may also reveal any hidden infections, although this is not guaranteed – particularly if it has not been updated recently.

There may also be spelling mistakes or other grammatical errors in the subject line, email address or body text that give the game away.

Keeping a data backup either via the cloud or external storage device that is not always connected to your PC can help to protect your data.

WHAT IS RANSOMWARE?

Ransomware is a type of malicious software that criminals use to attack computer systems.

Hackers often demand the victim to pay ransom money to access their files or remove harmful programmes.

The aggressive attacks dupe users into clicking on a fake link – whether it’s in an email or on a fake website, causing an infection to corrupt the computer.

In some instances, adverts for pornographic websites will repeatedly appear on your screen, while in others, a pop-up will state that a piece of your data will be destroyed if you don’t pay.

In the case of the Wanna Decryptor or ‘WannaCry’ Virus that hit the NHS last month, this targets Microsoft’s widely used Windows operating system.

The virus encrypts certain files on the computer and then blackmails the user for money in exchange for the access to the files.

It leaves the user with only two files: Instructions on what to do next and the Wanna Decryptor program itself.

When opened the software tells users that their files have been encrypted and gives them a few days to pay up or their files will be deleted.

It can quickly spread through an entire network of computers in a business or hospital, encrypting files on every PC. 

Such malware can be avoided by checking app permissions, avoiding installing questionable apps and being careful about what email attachments you open.

DAILY MAIL


#spyware #malware #wnnacry #blackmail #necurus #ransomware

====================================================================================

DISCLAIMER: Ads seen on this page or on this site 

are NOT endorsed by NOR are they placed by Due Diligence

THIS ARTICLE ENDS HERE

===========================================================================

 

 



Before It’s News® is a community of individuals who report on what’s going on around them, from all around the world.

Anyone can join.
Anyone can contribute.
Anyone can become informed about their world.

"United We Stand" Click Here To Create Your Personal Citizen Journalist Account Today, Be Sure To Invite Your Friends.

Please Help Support BeforeitsNews by trying our Natural Health Products below!


Order by Phone at 888-809-8385 or online at https://mitocopper.com M - F 9am to 5pm EST

Order by Phone at 866-388-7003 or online at https://www.herbanomic.com M - F 9am to 5pm EST

Order by Phone at 866-388-7003 or online at https://www.herbanomics.com M - F 9am to 5pm EST


Humic & Fulvic Trace Minerals Complex - Nature's most important supplement! Vivid Dreams again!

HNEX HydroNano EXtracellular Water - Improve immune system health and reduce inflammation.

Ultimate Clinical Potency Curcumin - Natural pain relief, reduce inflammation and so much more.

MitoCopper - Bioavailable Copper destroys pathogens and gives you more energy. (See Blood Video)

Oxy Powder - Natural Colon Cleanser!  Cleans out toxic buildup with oxygen!

Nascent Iodine - Promotes detoxification, mental focus and thyroid health.

Smart Meter Cover -  Reduces Smart Meter radiation by 96%! (See Video).

Report abuse

    Comments

    Your Comments
    Question   Razz  Sad   Evil  Exclaim  Smile  Redface  Biggrin  Surprised  Eek   Confused   Cool  LOL   Mad   Twisted  Rolleyes   Wink  Idea  Arrow  Neutral  Cry   Mr. Green

    MOST RECENT
    Load more ...

    SignUp

    Login

    Newsletter

    Email this story
    Email this story

    If you really want to ban this commenter, please write down the reason:

    If you really want to disable all recommended stories, click on OK button. After that, you will be redirect to your options page.