Skip to main content

Monero Mining Malware Exploits Microsoft IIS Server 6.0

MobeRat is a newly observed remote access trojan targeting Android devices. It is being offered as-a-service to affiliates through a number of dark web forums.
Report a cyber attack: call 0300 303 5222 or email [email protected]

This content has been archived

This article no longer conforms to NHS Digital's standards for cyber alerts, and may contain outdated or inaccurate information. Use of this information contained in this page is at your own risk

Summary

MobeRat is a newly observed remote access trojan targeting Android devices. It is being offered as-a-service to affiliates through a number of dark web forums.

Threat details


Remediation steps

Type Step
  • Use a vulnerability scanner (such as Nessus, OpenVAS or Microsoft Baseline Security Analyser) to identify any unpatched systems.
  • Ensure all affected platforms are updated with the most recent security updates.
  • Ensure your AV software is properly configured to automatically scan all files and file operations (including file reads, writes and re-names) and manually run scans on critical assets such as servers and shared network file storage.


CVE Vulnerabilities

Last edited: 17 February 2020 11:35 am