• Home
    • What is
    • Computer security
      • Windows security
      • Mac security
      • Linux security
    • Mobile security
      • Android security
      • iOS Security
    • Data security
    • SCCM
    • Reviews
      • Case studies
    • Advertise
    • Contact
      • Privacy Policy
  • Subscribe now

    Loading
  • Home
  • What is
  • Computer security
    • Windows security
    • Mac security
    • Linux security
  • Mobile security
    • Android security
    • iOS Security
  • Data security
  • SCCM
  • Reviews
    • Case studies
  • Advertise
  • Contact
    • Privacy Policy
Home » Computer security data security Latest Cybersecurity News

Netwalker Ransomware is being dispersed using phishing hoaxes

William Marshal Posted On March 23, 2020
0



Netwalker-ransomware

COVID-19 pandemic is not just for humans, but also for the computers and mobile devices. While the coronavirus is showing no symptoms of slowing down, attackers are continuing to unfurl more phishing scams and malware. Researchers from MalwareHunterTeam have identified a new phishing campaign that is distributing an attachment which installs Netwalker ransomware in the devices.

This Netwalker ransomware has already been known as Malito, but has recently been used to target government agencies and private enterprises. Netwalker has recently hit the Toll Group and the Champaign Urbana Public Health District in Illinois. 

How does Netwalker ransomware work?

Once the attackers deploy the phishing campaign, anybody who open the mail and downloads the attachment CORONAVIRUS_COVID-19.vbs, will own a exe file for Netwalker, then start executing the codes to extract the code and install it on the users device. Post installation an executable will stored in the temp and the program starts running to encrypt files within the device. After encryption the exe will rename the encrypted files with any random extension.

After completing the encryption the ransomware, sends a note via Readme.txt file briefing the procedure to pay the ransom. This time attackers have used the Tor’s payment site to receive the ransom.

What is threatening about the Netwalker?

Unlike other ransomware this one does not support simple decryption procedure. Users should have had a backup to restore the files, or work on those files again. Paying the ransom could release those encrypted files, but that is totally unethical to do. Furthermore, paying ransoms will motivate the attackers to deploy more such campaigns in future. So enterprises are advised not to pay the ransom.

Rising coronavirus attacks

In the span of two months, 1000 coronavirus targeted domains were created, DDOS attacks, phishing campaigns are expanding, ransomware targeting computers and mobile devices have also increased. The CISA and WHO have already mentioned to stay alert on coronavirus targeted phishing campaigns, enterprises are advised to ensure their remote workers are aware of these threats and do not become a victim of such baits.

Only efficient cybersecurity strategies and awareness will help businesses stay immune against these cyberattacks. We at ‘The Cybersecurity Times’, have defined some tips to improve the cybersecurity while working from home. 

Subscribe to our newsletter for daily alerts on cyber events, you can also follow us on Facebook, Linkedin, Instagram, Twitter and Reddit. 

Share the article with your friends


Coronavirus ransomware netwalkerNetwalker malwareNetwalker ransomwarenetwalker ransomware covid19RansomwareRansomware netwalker


Author

William Marshal

William has been one of the key contributors to 'The Cybersecurity Times' with 9.5 years of experience in the cybersecurity journalism. Apart from writing, he also like hiking, skating and coding.

You may also like
Toronto Public Library Faces Ongoing Technical Disruptions from Black Basta Ransomware Attack
November 2, 2023
ABB Confirms Ransomware Attack and Data Breach, Initiates Investigation
May 27, 2023
Action1 RMM exploited for a ransomware attack on MSPs and IT Departments
April 16, 2023
Leave A Reply

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.

  • Subscribe to our newsletter

    Loading
  • Windows security

    • Top 9 Best Log Management Tools for 2025
      September 20, 2025
    • Top 4 Remote Support Tools for 2025- Best Remote Support...
      September 18, 2025
    • Top 5 Best Unified Endpoint Management (UEM) Software...
      September 12, 2025
    • Top 5 Threat Intelligence Tools For 2025
      July 25, 2025
    • Top 5 Best Microsoft Intune Alternatives to Consider...
      July 23, 2025


  • About us

    Our vision is to deliver the trending and happening cyber events to the enthusiasts.

    We believe in delivering educational and quality content for hassle-free understanding of the subject.

  • Subscribe to our newsletter

    Loading
  • Follow us

  • Advertise with us

    You can reach us via Facebook, Linkedin, or Twitter for advertising purposes.


© The Cybersecurity Times 2022. All rights reserved.
Press enter/return to begin your search