The National Cyber Protection Institute (NBSZ NKI) of the National Security Service issues extraordinary information about the FluBot malware spread by spam, apparently from parcel service providers.
Based on further investigations by the NBSZ NKI, it was established - in connection with the alert published on 24.03.2021 - that in the case of devices affected by the infection, the FluBot malware constantly monitors the applications running on the devices. If the program detects the launch of an application related to financial or cryptocurrencies, it “masks” the original application (with a so-called overlay technique) and, in addition to the original application, opens a phishing interface similar to the original, which can be used by the user (username, password) to retrieve and transmit data.
To date, the malware targets users of the following applications:
MKB Mobile Application
K&H mobile bank
Budapest Bank Mobill App
OTP SmartBank
UniCredit Mobile Application
George Hungary
Crypto exchanges, online
Blockchain Wallet
Coinbase - Buy & Sell Bitcoin Crypto Wallet
Binance - Buy & Sell Bitcoin Securely
Blockchain Wallet
However, based on the malware scan, the above list may change, as the list of targeted applications is not pre-recorded in the malware.
The NBSZ NKI recommends taking all the steps related to FluBot infections in the following order:
Download and install the “FluBot Malware Uninstall” [2] application from the Google Play Store.
Stop the Wi-Fi and mobile data connection of the infected device.
Follow the instructions on the screen.
Follow the instructions to remove the malware.
Follow the on-screen instructions to cancel the default startup selection.
Uninstall an application called “FluBot Malware Uninstall”.
If the application cannot be eradicated using an application called "FluBot Malware Uninstall", it is recommended that:
back up data stored on your device (such as photos, contacts, etc.), and then
resetting the device to factory settings.
NBSZ NKI staff tested the operation of the application called “FluBot Malware Uninstall” on the following versions:
Android 8.1;
Android 9.0;
Android 10.1;
Android 11.0.

No comments:
Post a Comment