With the increasing use of the Internet, billions of people now spend most of their day online. However, it is a known fact that the cyber world has some scary aspects. Every day, we hear that malicious people are attacking cyber attacks or that defenses are being built against attacks.
Now, one of the world’s largest technology companies, the US-based Microsoft, has received a warning about such a subject. The giant company made statements about a high-risk malware, which is described as a ‘worm’ and infects hundreds of Windows corporate networks.
‘Raspberry Robin’
It is stated that this malware is named ‘Raspberry Robin’ and spreads via USB devices containing ‘.LNK’ file. According to the descriptions, this worm creates a msiexec.exe process via ‘Command Prompt’ at a user file and launches another malicious file. It is then stated that Raspberry Robin communicates with the command and control servers via a short URL, and if the connection is successful, it downloads and installs a number of other malicious DLLs.
It should be noted that Raspberry Robin is not a new malware, it was first noticed by some cybersecurity experts in 2021. In addition, Microsoft states that it has seen evidence that this software was used even in 2019.
According to the news of Bleeping Computer, the giant company started to warn Defender for Endpoint subscribers about the dangers posed by Raspberry Robin, and stated that hundreds of organizations in multiple industries encountered the worm in their Windows network.
Finally, it is among the statements that those behind Raspberry Robin have not yet accessed sensitive information. However, it should be underlined that they can easily bypass the ‘User Account Control’ with the things they download and do this. While the target of the people behind this remains a mystery, the giant company describes Raspberry Robin as high risk and warns users.