HT TECH wants to start sending you push notifications. Click allow to subscribe

QakBot malware is BACK months after being shut down by FBI! Know how it targets you

QakBot malware, which can steal your financial information is back, mere months after being shut down by the FBI. Know how it targets you.

By: HT TECH
Updated on: Dec 19 2023, 12:13 IST
QakBot had infected nearly 700,000 systems around the world before being shut down, according to the FBI. (Pixabay)

In this digital era, cybersecurity has become a critical issue. The world’s biggest companies are spending millions of dollars to develop cybersecurity solutions that can not only stop but also counter malware spread by threat actors. Law enforcement agencies also have their own cybersecurity divisions aimed at keeping people safe from online attacks. The Federal Bureau of Investigation (FBI) also launched a massive operation earlier this year and put a stop to a dangerous malware known as QakBot. However, it is now back mere months after being shut down by the FBI. Know how it targets you this time around.

QakBot is back

According to a post by Microsoft on X (via BleepingComputer), QakBot is back. This time around, it is targeting victims in the hospitality sector. The threat actors, masquerading as the IRS, send the malware in a PDF file via email phishing. When the email is received, the PDF file states “Document preview is not available”, thus, requiring the victim to download it. As soon as it is downloaded and opened, a digitally signed Windows Installer (.msi) contained in the PDF executes an embedded DLL, and the malware is installed on your computer.

You may be interested in

Mobiles Tablets Laptops
7% OFF
Apple iPhone 15 Pro Max
  • Black Titanium
  • 8 GB RAM
  • 256 GB Storage
₹148,900₹159,900
Buy now
23% OFF
Samsung Galaxy S23 Ultra 5G
  • Green
  • 12 GB RAM
  • 256 GB Storage
₹115,999₹149,999
Buy now
Google Pixel 8 Pro
  • Obsidian
  • 12 GB RAM
  • 128 GB Storage
₹106,998
Check details
Apple iPhone 15 Plus
  • Black
  • 6 GB RAM
  • 128 GB Storage
₹87,900
Check details
21% OFF
Acer Swift Go SFG14 41 NX KG3SI 002 Laptop
  • Pure Silver
  • 8 GB RAM
  • 512 GB SSD
₹58,990₹74,999
Buy now
39% OFF
Acer Aspire 5 A515 57G Laptop
  • Gray
  • 16 GB RAM
  • 512 GB SSD
₹54,949₹89,999
Buy now
22% OFF
Acer Aspire 3 A315 24 NX KDESI 004 Laptop
  • Silver
  • 8 GB RAM
  • 512 GB SSD
₹33,499₹42,999
Buy now
39% OFF
Asus VivoBook 15 X515JA BQ322WS Laptop
  • Transparent Silver
  • 8 GB RAM
  • 512 GB SSD
₹31,490₹51,990
Buy now
34% OFF
Xiaomi Pad 6
  • Mist Blue
  • 6 GB RAM
  • 128 GB Storage
₹26,299₹39,999
Buy now
55% OFF
Lenovo Tab M10 5G
  • Abyss Blue
  • 6 GB RAM
  • 128 GB Storage
₹20,999₹47,000
Buy now
32% OFF
Realme Pad 2
  • Imagination Grey
  • 6 GB RAM
  • 128 GB Storage
₹19,790₹28,999
Buy now
Honor Pad X9
  • Gray
  • 4 GB RAM
  • 128 GB Storage
₹14,999
Check details

What is QakBot?

QakBot first emerged in 2008 and was primarily a banking trojan and credential stealer. It was aimed at stealing people’s financial information. However, with time, it evolved into a multi-purpose botnet with backdoor capabilities. This malware targets people via phishing. The victim receives a link or a PDF document via email which when clicked upon, delivers additional ransomware to the computer, as per the FBI.

Also read: Looking for a smartphone? To check mobile finder click here.

QakBot has remote code execution (RCE) capabilities, meaning threat actors can also execute secondary attacks including delivering malicious payloads and reconnaissance. According to law enforcement agencies, this malware was linked to at least 40 attacks on big companies worldwide.

How was it shut down?

After more than a decade of targeting victims, a multinational operation to stop it spearheaded by the FBI took place earlier this year. Known as “Duck Hunt”, this operation involved the involvement of law enforcement agencies from the US, France, Germany, the Netherlands, Romania, Latvia, and the United Kingdom. As per the FBI, the agency gained lawful access to the malware’s infrastructure. It found that QakBot infected nearly 200,000 computers in the US, and 700,000 systems worldwide.

FBI Director Christopher Wray said, “This botnet provided cybercriminals like these with a command-and-control infrastructure consisting of hundreds of thousands of computers used to carry out attacks against individuals and businesses all around the globe”.

FBI then redirected Qakbot traffic to Bureau-controlled servers. It then resulted in the affected devices downloading an uninstaller file specially designed for removing the QakBot malware. It also prevented the installation of any other malware.

Catch all the Latest Tech News, Mobile News, Laptop News, Gaming news, Wearables News , How To News, also keep up with us on ,Twitter, Facebook, , and Instagram. For our latest videos, subscribe to our YouTube channel.

First Published Date: 19 Dec, 12:07 IST

Sale

Mobiles Tablets Laptops
7% OFF
Apple iPhone 15 Pro Max
  • Black Titanium
  • 8 GB RAM
  • 256 GB Storage
₹148,900₹159,900
Buy now
13% OFF
Xiaomi 14
  • Matte Black
  • 12 GB RAM
  • 512 GB Storage
₹69,999₹79,999
Buy now
11% OFF
Apple iPhone 15 Plus
  • Black
  • 6 GB RAM
  • 128 GB Storage
₹79,800₹89,900
Buy now
3% OFF
Samsung Galaxy Z Fold5
  • Icy Blue
  • 12 GB RAM
  • 256 GB Storage
₹154,999₹159,999
Buy now
57% OFF
Lenovo Tab M10 5G
  • Abyss Blue
  • 6 GB RAM
  • 128 GB Storage
₹19,999₹47,000
Buy now
28% OFF
Realme Pad 2
  • Imagination Grey
  • 6 GB RAM
  • 128 GB Storage
₹17,999₹24,999
Buy now
20% OFF
Samsung Galaxy Tab S9 5G 256GB
  • Graphite
  • 8 GB RAM
  • 256 GB Storage
₹86,999₹108,699
Buy now
28% OFF
realme Pad 2 WiFi
  • Imagination Grey
  • 6 GB RAM
  • 128 GB Storage
₹17,999₹24,999
Buy now
23% OFF
Infinix INBook X1 Neo XL22 Laptop Intel Celeron Quad Core 8 GB 256 GB SSD Windows 11
  • Blue
  • 4 GB RAM
  • 128 GB SSD
₹22,990₹29,990
Buy now
28% OFF
Asus ROG Strix G17 G712LU EV078T Laptop
  • Blue
  • 16 GB RAM
  • 1 TB SSD
₹81,990₹113,990
Buy now
40% OFF
Samsung Galaxy Book Go Laptop
  • Silver
  • 4 GB RAM
  • 128 GB SSD
₹28,690₹47,990
Buy now
22% OFF
Asus ROG Strix G15 G513RC HN085WS Laptop
  • Electro Punk
  • 16 GB RAM
  • 1 TB SSD
₹70,990₹90,990
Buy now
NEXT ARTICLE BEGINS