Share this article

Latest news

With KB5043178 to Release Preview Channel, Microsoft advises Windows 11 users to plug in when the battery is low

Copilot in Outlook will generate personalized themes for you to customize the app

Microsoft will raise the price of its 365 Suite to include AI capabilities

Death Stranding Director’s Cut is now Xbox X|S at a huge discount

Outlook will let users create custom account icons so they can tell their accounts apart easier

TrickBot malware campaign is after your Office 365 passwords

2 min. read

Published onJuly 22, 2019

published onJuly 22, 2019

Share this article

Read our disclosure page to find out how can you help Windows Report sustain the editorial teamRead more

A new malware campaign surfaced up, and this time the target is user passwords. The campaign is directed atWindows 10users, but other platforms may be affected, as well.

It uses a password-stealingTrojancalled TrickBot. The novelty of thismalware, and also the dangerous part, is that it uses real-life information to deliver the payload.

What is this TrickBot malware and what does it do?

More specifically, asdiscovered byMalwareHunterTeam, a fake Office 365 page that is incredibly similar to a real one, providing even the links that lead to Microsoft, is prompting users to update theirbrowser.

The mainbrowsersaffected by this areGoogle ChromeandMozilla Firefox, and after accessing the page, a message saying that yourbrowseris out of date and you need to update it appears.

For theChromeusers, the message is calledChromeUpdate Center, and for theFirefoxusers, the message is entitledFirefoxUpdate Center.

If you click on the Update button, the TrickBot information-stealingTrojanwill automatically install on the PC and it will hide behind a svchost.exe process that will not raise any doubts in Task Manager.

After that, it will send sensitive information to a server. First, it’ll send info about the PC, programs, or services. Then, browsing data, login credentials, autofill information, and more importantly, passwords.

How can I protect my data from the TrickBot password-stealing Trojan?

If you’ve already encountered this malware campaign and clicked on the update button, we recommend that you immediately perform a full system scan to try to get rid of theTrojan.

Perform a full system scan directly from Windows Defender. Find out how it’s done right here!

To stay protected at all times, make sure that you use ananti-malware tool, or even better, an antivirus solution to keep you PC and your personal data safe.

If you’re looking for the best antivirus software to protect your data, check outthis listwith our best picks.

Don’t hesitate to take a look on that list and choose an antivirus that best fits your needs. And don’t forget to always keep your Windows updated, as this may save you from a lot of headaches.

More about the topics:Cybersecurity,malware,trojan,windows 10

Vlad Turiceanu

Windows Editor

Passionate about technology,Windows, and everything that has a power button, he spent most of his time developing new skills and learning more about the tech world.

Coming from a solid background in PC building and software development, with a complete expertise in touch-based devices, he is constantly keeping an eye out for the latest and greatest!

User forum

0 messages

Sort by:LatestOldestMost Votes

Comment*

Name*

Email*

Commenting as.Not you?

Save information for future comments

Comment

Δ

Vlad Turiceanu

Windows Editor

Coming from a solid background in PC building and software development, he’s a Windows 11 Privacy & Security expert.