Nyob rau hauv ib txwm-evolving toj roob hauv pes ntawm cyber hem, ib tug formidable yeeb ncuab tau tshwm sim nyob rau hauv daim ntawv ntawm Prime cov ntaub ntawv stealer. Qhov no insidious malware tshwj xeeb hauv kev zais zais cov ntaub ntawv rhiab los ntawm cov neeg siv Windows, ua rau muaj kev pheej hmoo loj rau kev nyab xeeb thiab kev ceev ntiag tug ntawm cov tib neeg cuam tshuam. Hauv tsab xov xwm no, peb yuav piav qhia txog kev ua haujlwm tsis zoo ntawm Prime, tshawb xyuas nws cov yeeb yam, qhov tshwm sim, thiab muab cov lus qhia tshem tawm nrog rau cov kev coj ua zoo tshaj plaws los tiv thaiv kev kis kab mob yav tom ntej.
Kev Ua Haujlwm thiab Kev Txiav Txim ntawm Prime
Prime information stealer yog ib siab phem software uas ua tau zoo hauv kev nthuav dav dav ntawm cov ntaub ntawv rhiab heev, suav nrog cov ntsiab lus browser, cov ntaub ntawv cryptocurrency, cov ntaub ntawv tsis sib haum, cov lus qhia tshwj xeeb, thiab ntau dua. Nws tsom mus rau Discord cov ntaub ntawv tub sab yog tshwj xeeb tshaj yog hais txog, sau Nitro subscription status, cov ntaub ntawv them nqi, email chaw nyob, xov tooj, thiab cov ncauj lus kom ntxaws cov phooj ywg uas muaj npe nrov ntawm Discord platform.
Ntxiv mus, Prime infiltrates cov ntaub ntawv browser, rho tawm cov ncuav qab zib thiab khaws cov passwords los ntawm cov browser nrov xws li Chrome, Edge, Brave, Opera GX, thiab lwm yam. Cov malware txuas ntxiv nws mus txog rau cov ntaub ntawv ntsig txog cryptocurrency, tsom mus rau browser txuas ntxiv xws li MetaMask, Phantom, Trust Wallet, Coinbase Wallet, thiab Binance Wallet. Nws kuj tseem soj ntsuam rau hauv daim ntawv thov cryptocurrency software xws li Exodus Wallet thiab Atomic Wallet.
Siv cov tswv yim zoo li Discord txhaj, Prime nquag cuam tshuam thiab xa cov tokens, passwords, thiab email cov ntaub ntawv thaum muaj kev sib cuam tshuam cov neeg siv ntawm cov platforms xws li Chav, Riot Games, Telegram, thiab Discord. Cov malware kuj sau cov ntsiab lus tshwj xeeb rau cov neeg siv, cov lus qhia tshwj xeeb, cov ntaub ntawv disk, thiab kev teeb tsa lub network, ua tib zoo tshem tawm kev tshawb pom los ntawm kev ntsuas kev tiv thaiv.
Tshawb nrhiav cov npe thiab cov kev hem zoo sib xws
Prime tau raug txheeb xyuas los ntawm ntau cov tshuaj tiv thaiv kab mob nrog cov npe tshawb pom xws li Avast (Lwm yam: Malware-gen [Trj]), Combo Cleaner (Generic.Trojan.Pyngo.Stealer.Marte.A.BE167CE5), ESET-NOD32 (Python/PSW .Agent.BGW), Kaspersky (HEUR:Trojan.Python.Agent.gen), thiab Microsoft (Trojan:Python/Multiverze). Cov kev hem thawj zoo sib xws hauv cyber toj roob hauv pes suav nrog cov ntaub ntawv nyiag khoom xws li SpyEye, Zeus, thiab Tus Neeg Saib Xyuas Tesla, txhua tus muaj nws tus kheej lub peev xwm ua phem.
Kev Qhia Tawm Tawm
Tshem tawm Prime cov ntaub ntawv stealer yuav tsum muaj txoj hauv kev kom ua tiav kev tshem tawm. Ua raws li cov kauj ruam no kom tshem tawm qhov kev hem thawj ntawm koj lub cev:
- Disconnect los ntawm Internet: Disable koj qhov kev sib txuas hauv internet tiv thaiv Prime los ntawm kev sib txuas lus nrog nws cov lus txib thiab tswj cov servers.
- Txheeb xyuas cov txheej txheem phem: Qhib Task Manager (Ctrl + Ua haujlwm + Esc) thiab txheeb xyuas cov txheej txheem tsis txaus ntseeg cuam tshuam nrog Prime. Tshem tawm cov txheej txheem no.
- Delete Malicious Files: Nkag mus rau AppData directory thiab tshem tawm cov ntaub ntawv ntsig txog Prime. Tshawb nrhiav cov npe txawv txawv lossis cov ntaub ntawv hloov tshiab tsis ntev los no.
- Hloov Registry nkag: Kho kom raug Windows Registry (
regedit
) thiab tshem tawm cov kev nkag tsim los ntawm Prime. Ua tib zoo ceev faj thaum kho cov npe, vim nws muaj cov txheej txheem tseem ceeb. - Startup Persistence: Tshawb xyuas thiab tshem tawm ib qho kev nkag hauv qhov pib sau npe uas Prime yuav tau ntxiv kom ntseeg tau tias muaj kev pheej hmoo thoob plaws lub cev rov pib dua.
- Ua ib qho Full System Scan: Siv cov tshuaj tiv thaiv kab mob txhim khu kev qha los ua kev soj ntsuam tag nrho ntawm koj lub cev. Tshem tawm ib qho tseem ceeb ntawm Prime txheeb xyuas thaum lub scan.
Cov kev coj ua zoo tshaj plaws rau kev tiv thaiv
Txhawm rau tiv thaiv koj lub cev tiv thaiv kev hem thawj zoo li Prime, siv cov kev coj ua zoo tshaj plaws hauv qab no:
- Khaws Software Hloov Kho Tshiab: Tsis tu ncua hloov kho koj lub operating system, browsers, thiab kev ruaj ntseg software los kho qhov tsis zoo uas malware siv.
- Kev ceev faj nrog Email Attachments: Tsis txhob qhib email txuas los ntawm qhov chaw tsis paub lossis tsis ntseeg. Txheeb xyuas tus neeg xa ntawv qhov tseeb ua ntej cuam tshuam nrog cov ntsiab lus email.
- Nyob Qhia: Nyob twj ywm tshiab ntawm qhov tseeb cybersecurity hem thiab txais yuav cov kev tiv thaiv tiv thaiv koj lub cev.
- Siv Strong, Cim Passwords: Siv cov passwords muaj zog thiab tshwj xeeb rau cov nyiaj sib txawv, txo qhov kev pheej hmoo ntawm kev nkag tsis tau.
- Ua kom paub txog kev ruaj ntseg: Qhia koj tus kheej thiab koj pab neeg txog kev hem thawj cyber, hais txog qhov tseem ceeb ntawm kev ceev faj hauv online.
xaus
Prime neeg nyiag ntaub ntawv sawv cev rau qhov kev hem thawj muaj zog rau cov neeg siv Windows, paub txog stealthily rho tawm cov ntaub ntawv rhiab heev. Los ntawm kev nkag siab nws cov yeeb yam, qhov tshwm sim, thiab siv cov txheej txheem tshem tawm nruj, cov neeg siv tuaj yeem tiv thaiv lawv cov kev tiv thaiv tiv thaiv qhov no thiab cov malware zoo sib xws. Kev txhawb nqa kev tiv thaiv kev tiv thaiv cybersecurity tseem yog qhov tseem ceeb hauv kev sib ntaus sib tua tsis tu ncua tiv thaiv kev hloov pauv cyber hem.