A new virus ‘Bladabindi’ is on fly to Windows computers in India

Cyber security sleuths have found a multi-identity virus, Bladabindi targeting windows computers in India that can steal personal information and use it for executing anti-social and illegal activities.

In this regard, Computer Emergency Response Team(CERT)-India said that it could infect Microsoft's Windows operating system and can spread through removable USB flash drives.

Microsoft malware protection center provides some information about this virus and here by says “The Bladabindi malware family can steal your sensitive information and send it to a malicious hacker. They can also download other malware and give backdoor access to your PC.”

It also recommends to stay updated with the Microsoft's security software definitions and databases. You can do the update thing even if you are using a third party security software to protect your PC. In fact it is mostly recommended to keep your computer and information safe.

How it is created and propagated?

Bladabindi virus can be created using a publicly available tool malicious hacker tool known as NJ Rat.

NJ Rat allows the attacker to choose an icon from the list which mocks a famous software. That means a Bladabindi virus can be found with any icon that can mislead you into running the program on your computer.

Microsoft had keep track of this virus and stacked in some list of the icons mostly used by this malware program. They are as follows:

bladabindi-virus-icons

When the malicious file is run, Bladabindi virus copies itself into the following locations with variable name. It copies into root folder of removable devices and can spread so on. This virus can even spread through all kind of digital devices that have a little memory.

This virus copies itself into the start up folder of windows operating system and runs every time you start your PC. It also makes changes to the windows registry in order to run every time when the computer starts.

It also runs net.exe to add itself to the firewall exclusions and bypass the firewall.
 

How to protect your computer from it?

Update your antivirus definitions and perform a complete scan on your computer. Clean your USB drives and secure your data in it. If needed, format your removable drives and disable ‘autorun’ feature for removable devices on your computer.

Be careful with the suspicious email attachments and web links. They can propagate virally when once accessed(like we have discussed about Facebook latest spam recently).

Also be careful with the pen drives and memory cards from your friends. They might not be protecting themselves with proper security software. To protect yourself and you friends from it spread the word and alert them. Be safe!

0/Post a reply/Replies

Previous Post Next Post