Dutch authorities introduced the takedown of AVCheck, one of many largest counter antivirus (CAV) companies utilized by cybercriminals worldwide.
CAV companies corresponding to AVCheck play an vital function within the malware deployment course of, as they permit cybercriminals to check if their malware is detected by antivirus merchandise and scanners, earlier than utilizing it in real-world assaults.
Malware that may evade detection can then be deployed with out being seen to steal data, acquire and preserve entry to compromised methods, and encrypt knowledge or lock down total enterprise networks.
Cybercriminals usually use CAV companies together with crypting companies, which are supposed to make the malware tougher to detect.
AVCheck was taken down on Might 27, when authorities seized 4 domains and their related server, and arrange a pretend login web page to warn and deter the service’s customers.
Legislation enforcement additionally seized the service’s database, acquiring e mail addresses and different knowledge that linked using AVCheck to recognized ransomware teams.
The seizure was carried out in coordination with Finnish and Dutch authorities, as a part of Operation Endgame, which lately focused the DanaBot botnet and the Lumma Stealer data stealer.
Legislation enforcement businesses in Denmark, Finland, France, Germany, the Netherlands, and the US participated within the operation, with assist from authorities in Portugal and Ukraine.
“By leveraging counter antivirus companies, malicious actors refine their weapons towards the world’s hardest safety methods to raised slip previous firewalls, evade forensic evaluation, and wreak havoc throughout victims’ methods,” FBI Particular Agent Douglas Williams mentioned.Commercial. Scroll to proceed studying.
Associated: Russian Qakbot Gang Chief Indicted in US
Associated: Europol Targets Prospects of Smokeloader Pay-Per-Set up Botnet
Associated: Bumblebee Malware Loader Resurfaces Following Legislation Enforcement Takedown
Associated: Ukrainian Sentenced to Jail in US for Position in Zeus, IcedID Malware Operations