Warning: JSocket RAT malware spreads in Finland

Finnish National Bureau of Investigation (Keskusrikospoliisi) has begun to explore its dissemination campaign on JSocket RAT malware that has plagued widely. National Bureau of Investigation investigates, according to it malware is sent to 15 000 Finnish people through e-mail.

On the basis of information received by the Finnish cyber security center (Kyberturvallisuuskeskus) there has been recently observed JSocket RAT malware infections. JSocket RAT malware is distributed as an email attachment files. Often, as a unifying factor in harmful e-mail messages have been their accession to economic affairs (invoices, purchase orders). JSocket RAT malware give a full management rights of contaminated equipment attacker

Socket RAT is able to hurt a number of the most commonly used operating systems, as well as Android devices. An attacker gains full control over the infected machine, such as access to files stored on the device. He will take control of the device camera, gps positioning data and a microphone.

Cyber security Center (Kyberturvallisuuskeskus) advise you to take reservations about sending unknown messages, not just click on the suspicious links and attachments, as well as to avoid informal mobile applications download sites.

Virus

 

I have received an e-mail that matched the above description around week ago, but because it looked suspicious (even though those details on attack were not at the moment available), so I did not open it or the attachments in it. Instead of that I deleted the e-mail and reported the issue to the relevant parties (in this case I reported to the management of organization that sent the mail) that their organization is likely spreading malware or someone else is spreading it with their name in the mail.

It seems that the informational mail has been worked as expected, because in less than one week from my mail report, I received a mail from Cyber security Center (Kyberturvallisuuskeskus): They tell that according to the information they have received I could have received an e-mail that contained malware targeted to around 15000 Finnish persons. They also asked to contact police in case the malware has been spread to your systems.

I was careful and did not get infected with malware. Be also careful.

 

More information:

https://www.viestintavirasto.fi/2016/01/ttn201601251108
https://www.viestintavirasto.fi/2016/01/ttn201601191543
https://www.viestintavirasto.fi/2016/01/ttn201601211637

 

Sources:

http://www.tivi.fi/Kaikki_uutiset/joko-sait-omasi-krp-tutkii-haittaohjelmaa-lahetetty-15-000-suomalaiselle-6247571

http://www.tivi.fi/Kaikki_uutiset/nyt-tarkkana-suomalaisten-koneita-ja-android-laitteita-kaapataan-tee-rikosilmoitus-6246412

https://www.viestintavirasto.fi/kyberturvallisuus/tietoturvanyt/2016/01/ttn201601191543.html

https://www.viestintavirasto.fi/kyberturvallisuus/tietoturvanyt/2016/01/ttn201601211637.html

 

 

0 Comments

Be the first to post a comment.

Leave a Comment

Your email address will not be published. Required fields are marked *

*

*