<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>smoke loader Archives - Linux Windows and android Tutorials</title>
	<atom:link href="https://www.osradar.com/tag/smoke-loader/feed/" rel="self" type="application/rss+xml" />
	<link>https://www.osradar.com</link>
	<description>tutorials and news and Seurity</description>
	<lastBuildDate>Tue, 06 Feb 2018 10:55:14 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=5.8.12</generator>
	<item>
		<title>Fake Meltdown and Spectre Patch – Beware of Malware</title>
		<link>https://www.osradar.com/fake-meltdown-spectre-patch-beware-malware/</link>
					<comments>https://www.osradar.com/fake-meltdown-spectre-patch-beware-malware/#respond</comments>
		
		<dc:creator><![CDATA[Mel K]]></dc:creator>
		<pubDate>Tue, 30 Jan 2018 10:46:37 +0000</pubDate>
				<category><![CDATA[Featured]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[fake meltdown patch]]></category>
		<category><![CDATA[fake patch]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[Meltdown]]></category>
		<category><![CDATA[smoke loader]]></category>
		<category><![CDATA[Spectre]]></category>
		<guid isPermaLink="false">https://www.osradar.com/?p=1648</guid>

					<description><![CDATA[<p>The Meltdown and Spectre are, by far, the biggest security flaw ever discovered. It challenged how we perceive our hardware and software in the field of security. These 2 bugs affect almost all the processors – Intel, AMD, ARM etc. all. Different systems are affected differently, but all of them require proper patches. Researchers and [&#8230;]</p>
<p>The post <a rel="nofollow" href="https://www.osradar.com/fake-meltdown-spectre-patch-beware-malware/">Fake Meltdown and Spectre Patch – Beware of Malware</a> appeared first on <a rel="nofollow" href="https://www.osradar.com">Linux  Windows and android  Tutorials</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>The Meltdown and Spectre are, by far, the biggest security flaw ever discovered. It challenged how we perceive our hardware and software in the field of security. These 2 bugs affect almost all the processors – Intel, AMD, ARM etc. all. Different systems are affected differently, but all of them require proper patches. Researchers and developers are working hard to provide the best software solution, as hardware solution requires processor replacement, a very costly process that not everyone can pursue. A security patch is the best solution for now.</p>
<p>Hackers are never falling behind the trend of the present. They’re also trying hard to use these flaws to exploit systems. In this series of attempts, they’re now releasing fake update packages in the name of system patches. That package contains a heinous malware to take over your system.</p>
<h3>Smoke Loader</h3>
<p>Malwarebytes spotted that fake package. The firm has also identified a new domain that contains a whole bunch of info on how Meltdown and Spectre affect CPUs. Apparently, the website also contains some content from the German Federal Office for Information Security (BSI). The fake package is a ZIP archive link. The file name was “Intel-AMD-SecurityPatch-10-1-v1.exe”.</p>
<h3>How it works</h3>
<p>A victim trying to download and deploy the file installs Smoke Loader malware without any knowledge. Moreover, the installed malware downloads several more payloads by connecting to various domains and start sending encrypted data to servers. The website was also sending fake phishing emails. Here’s a screenshot of the website.</p>
<p><img loading="lazy" class="alignnone size-full wp-image-1649" src="https://www.osradar.com/wp-content/uploads/2018/01/fake-meltdown-spectre-patch-website.png" alt="" width="1061" height="777" srcset="https://www.osradar.com/wp-content/uploads/2018/01/fake-meltdown-spectre-patch-website.png 1061w, https://www.osradar.com/wp-content/uploads/2018/01/fake-meltdown-spectre-patch-website-300x220.png 300w, https://www.osradar.com/wp-content/uploads/2018/01/fake-meltdown-spectre-patch-website-768x562.png 768w, https://www.osradar.com/wp-content/uploads/2018/01/fake-meltdown-spectre-patch-website-1024x750.png 1024w, https://www.osradar.com/wp-content/uploads/2018/01/fake-meltdown-spectre-patch-website-80x60.png 80w, https://www.osradar.com/wp-content/uploads/2018/01/fake-meltdown-spectre-patch-website-696x510.png 696w, https://www.osradar.com/wp-content/uploads/2018/01/fake-meltdown-spectre-patch-website-574x420.png 574w" sizes="(max-width: 1061px) 100vw, 1061px" /></p>
<p>Here is the file that contains the malware. Note that Smoke Loader is capable of loading other bunches of malware additionally to wreak havoc on your system.</p>
<p><img loading="lazy" class="alignnone size-full wp-image-1650" src="https://www.osradar.com/wp-content/uploads/2018/01/smoke-loader-fake-security-patch.png" alt="" width="772" height="583" srcset="https://www.osradar.com/wp-content/uploads/2018/01/smoke-loader-fake-security-patch.png 772w, https://www.osradar.com/wp-content/uploads/2018/01/smoke-loader-fake-security-patch-300x227.png 300w, https://www.osradar.com/wp-content/uploads/2018/01/smoke-loader-fake-security-patch-768x580.png 768w, https://www.osradar.com/wp-content/uploads/2018/01/smoke-loader-fake-security-patch-80x60.png 80w, https://www.osradar.com/wp-content/uploads/2018/01/smoke-loader-fake-security-patch-696x526.png 696w, https://www.osradar.com/wp-content/uploads/2018/01/smoke-loader-fake-security-patch-556x420.png 556w" sizes="(max-width: 772px) 100vw, 772px" /></p>
<p>The identifier of the malware, Malwarebytes already contacted with CloudFlare and Comodo on such abuse. Even if this attack is diminished, hackers are already on the edge of inventing other methods.</p>
<h3>How to stay protected</h3>
<p>To stay protected, it’s always necessary to stay vigilant and aware of such spoofing. You need to use the best antivirus or internet security software to prevent any malware injection into your system. You’re also recommended to take a look at the <a href="https://www.osradar.com/best-antivirus-software-2018/">top antivirus software 2018</a>.</p>
<p>Because of the Meltdown and Spectre, Linux is the most vulnerable to these attacks. Linux is the most used OS in the top level of cyber world – supercomputers, servers etc. all run on it. Fortunately, there’s a tool that will take care of any Meltdown attack, allowing system admins not to install the buggy Meltdown patch that slowed down the system. <a href="https://www.osradar.com/meltdown-defense-linux-tool-sentinelone/">Learn more about the tool</a>.</p>
<p>The post <a rel="nofollow" href="https://www.osradar.com/fake-meltdown-spectre-patch-beware-malware/">Fake Meltdown and Spectre Patch – Beware of Malware</a> appeared first on <a rel="nofollow" href="https://www.osradar.com">Linux  Windows and android  Tutorials</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://www.osradar.com/fake-meltdown-spectre-patch-beware-malware/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
	</channel>
</rss>
