❤๐Ÿšญwelcome to https://er-ramimohamed.blogspot.com/ please if ou have any question or suggestion dont heisting ๐Ÿšญ to send it to me at erramixx@gmail.com thanks ู…ุญู…ู€ู€ู€ู€ู€ู€ู€ู€ู€ู€ู€ู€ุฏ ุงู„ู€ู€ู€ู€ู€ู€ู€ู€ู€ู€ู€ู€ู€ู€ู€ู€ุฑุงู…ูŠ ูŠุฑุญุจูƒู… ูˆูŠุชู…ู†ู‰ ู„ู€ู€ู€ู€ู€ู€ู€ู€ู€ู€ูƒู… ุงู† ุชู‚ุถูˆุง ๐ŸŒน๐ŸŒนูˆู‚ุช ู…ููŠุฏ

ุงู„ุณุจุช، 4 ู…ุงูŠูˆ 2019

๐‘Š๐ด๐‘…๐‘๐ผ๐‘๐บ: ๐ด๐‘› ๐‘œ๐‘™๐‘‘ ๐‘ฃ๐‘–๐‘Ÿ๐‘ข๐‘  ๐‘กโ„Ž๐‘Ž๐‘ก ๐‘Ž๐‘ก๐‘ก๐‘Ž๐‘๐‘˜๐‘  ๐‘Š๐‘–๐‘›๐‘‘๐‘œ๐‘ค๐‘  ๐‘๐‘œ๐‘š๐‘’๐‘  ๐‘๐‘Ž๐‘๐‘˜ ๐‘Ž๐‘”๐‘Ž๐‘–๐‘› ๐‘Ž๐‘›๐‘‘ ๐‘กโ„Ž๐‘–๐‘  ๐‘ก๐‘–๐‘š๐‘’ ๐‘–๐‘ก'๐‘  ๐‘ ๐‘ก๐‘Ÿ๐‘œ๐‘›๐‘”๐‘’๐‘Ÿ


  In 2008, Qakbot, a malicious program that attacked companies and users to steal information by exploiting a security flaw in Windows, appeared. Fortunately, developments in cybersecurity and Microsoft's efforts have been able to stop the threat for a while, but not forever. According to Cisco Talos researchers , Qakbot was recently updated and returned again.

 The malicious software has regenerated its system so that it can remain on a computer without being detected by users or security systems and programs. The latest version of Qakbot is supported by a dropper, a program to install malicious code from the program itself or from external servers, making it unnoticed by an antivirus program. 
In the case of Qakbot's dropper, it can connect to multiple Internet addresses where malware that is created in JavaScript is hosted. It is important to note that the above addresses do not always belong to the hackers; however, some have been stolen to be used for data theft purposes. 
Once the malicious code is installed on the computer, it starts requesting its own implementation instructions, which are hosted on the external server. These instructions contain XOR encryption, while avoiding the possibility of knowing their true purpose if intercepted.

When the implementation process is completed and the malicious program contains its instructions, it begins to steal information in the background. According to researchers, Internet criminals are looking for special data that allows them, for example, access to bank accounts. Cisco Talos has shared a list of domains included in malware that can help prevent attacks. 
The big problem is that it will be difficult for us to see a solution soon to threaten the harmful Qakbot program, because its level of development allows it to continue to cause damage even when removing its main files from computers.

0 ุงู„ุชุนู„ูŠู‚ุงุช:

ุฅุฑุณุงู„ ุชุนู„ูŠู‚