{"id":6966,"date":"2021-05-14T07:58:00","date_gmt":"2021-05-14T15:58:00","guid":{"rendered":"https:\/\/cheapsslsecurity.com\/blog\/?p=6966"},"modified":"2022-03-21T22:00:51","modified_gmt":"2022-03-22T06:00:51","slug":"10-types-of-malware-your-it-guy-warned-you-about","status":"publish","type":"post","link":"https:\/\/cheapsslsecurity.com\/blog\/10-types-of-malware-your-it-guy-warned-you-about\/","title":{"rendered":"10 Types of Malware Your IT Guy Warned You About"},"content":{"rendered":"\n<h2 class=\"wp-block-heading\"><a href=\"https:\/\/www.mcafee.com\/enterprise\/en-us\/assets\/reports\/rp-quarterly-threats-apr-2021.pdf\">McAfee Labs reports<\/a> observing more than 1.4 billion malware detections in Q4 2020 \u2014 and that number that doesn\u2019t include Q1-Q3 2020 data! We\u2019ll explore 10 types of malicious software you need to know to protect yourself in 2021.<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">The threat of malware is growing every minute. McAfee Labs reports observing 648 malware threats <em>per minute<\/em> in Q4 2020 in their Threat Report 04.21. As you can imagine, knowing the different types of malware and exploring some real-world malware examples will help you understand how better to protect yourself and your organization from these pernicious threats.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Malware is a blanket term for all software programs and code that people create with malicious intent. A layman might find the word \u201ccomputer virus\u201d more relatable, but a virus is just one type of malware. Not all types of malware are viruses. (We talked about that in another recent article on the differences between viruses and malware.) So, what are the different types of malicious software? Let\u2019s look at some of the types of malware and how they affect us.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">10 Types of Malware That Can Affect Your Business<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Malware is a broad categorical term that encompasses many types of malware \u2014 as such, segregating it into a handful of specific types is difficult. That\u2019s because malware categories sometimes overlap and some cybercriminals use multiple types of malware to achieve their goals. To create a botnet, for example, bad guys can use various types of malicious software and code to infect and control devices (trojans, viruses, keyloggers, etc.).<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Keeping all of this in mind, let\u2019s look at the fundamental types of malware and how cybercriminals use them.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">1.&nbsp;Ransomware<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Ransomware is a type of malware that prevents you from accessing your data and\/or devices until you meet an attacker\u2019s specific demands. Typically, the bad guy demands a ransom (typically a cryptocurrency payment in exchange for a decryption key or code that will free of the victim\u2019s compromised resource(s). But even if the cybercriminal receives the ransom, they may not follow through with providing the victim with a valid decryption key or code.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This type of cyber-attack is gaining momentum in the digital world. This, no doubt, is largely thanks to the successful monetization of ransomware attacks and the availability of ransomware-as-a-service operations. In their April 2021 report we mentioned earlier, McAfee observed a 69% increase in new malware variants from Q3 to Q4 2020. Among ransomware attacks, some malware families took precedence over the others.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The following chart shows the most observed ransomware families in the year 2020:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"738\" height=\"446\" src=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/types-of-malware-ransomware-families.png\" alt=\"Types of malware graphic: This pie chart breaks down the top ransomware families of 2020\" class=\"wp-image-6969\" srcset=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/types-of-malware-ransomware-families.png 738w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/types-of-malware-ransomware-families-300x181.png 300w\" sizes=\"(max-width: 738px) 100vw, 738px\" \/><figcaption>Data source: <a href=\"https:\/\/www.mcafee.com\/enterprise\/en-us\/assets\/reports\/rp-quarterly-threats-apr-2021.pdf\">McAfee Labs Threat Report 04.21<\/a><\/figcaption><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/www.ic3.gov\/Media\/PDF\/AnnualReport\/2020_IC3Report.pdf\">The FBI\u2019s Internet Crime Complaint Center (IC3) reports<\/a> that they saw an increase in ransomware attack reports against the U.S. public over the last three years. Moreover, the ransom amounts demanded also increased in 2020. The chart below shows the number of complaints and losses complainants suffered over the last three years:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"738\" height=\"446\" src=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/ransomware-attacks.png\" alt=\"This bar chart shows the number of ransomware attack complaints that were reported between 2018 and 2020, along with the losses that resulted from them.\" class=\"wp-image-6970\" srcset=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/ransomware-attacks.png 738w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/ransomware-attacks-300x181.png 300w\" sizes=\"(max-width: 738px) 100vw, 738px\" \/><figcaption>Data source: <a href=\"https:\/\/www.ic3.gov\/Media\/PDF\/AnnualReport\/2020_IC3Report.pdf\">FBI IC3 Report 2020<\/a><\/figcaption><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">The chart shows the data of the three most recent years recorded by the IC3 team. The chart explicitly indicates that the rise of the average loss due to ransomware is much higher than the number of ransomware attacks. This clarifies that the losses incurred by the victims due to ransomware are rising.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/www.sophos.com\/en-us\/medialibrary\/Gated-Assets\/white-papers\/sophos-the-state-of-ransomware-2020-wp.pdf\">The State of Ransomware 2020<\/a> report by Sophos ranks the U.S. sixth globally for the highest rates of known ransomware attacks. The following chart shows the top 10 countries where Sophos reports organizations were hit by ransomware in the previous year:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"741\" height=\"449\" src=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/ransomware-attacks-by-country.png\" alt=\"A bar chart (using data from Sophos) that shows the breakdown of the top 10 countries that experienced the highest numbers of ransomware attacks against organizations \" class=\"wp-image-6971\" srcset=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/ransomware-attacks-by-country.png 741w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/ransomware-attacks-by-country-300x182.png 300w\" sizes=\"(max-width: 741px) 100vw, 741px\" \/><figcaption>Data source: Sophos\u2019s The State of Ransomware 2020 report.<\/figcaption><\/figure>\n\n\n\n<h4 class=\"wp-block-heading\">An Example of a Ransomware Attack: REvil<\/h4>\n\n\n\n<p class=\"wp-block-paragraph\">The data shows the widespread reach of ransomware as malware. Would you believe me if I told you that <a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/computer-giant-acer-hit-by-50-million-ransomware-attack\/\">the tech giant Acer was recently hit by a REvil ransomware attack<\/a>? (Although it\u2019s important to note that BleepingComputer reports that Acer hasn\u2019t openly admitted to the incident involving ransomware. They just said that they observed \u201cabnormal situations\u201d within their IT systems.)<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In this situation, BleepingComputer also reports that cybercriminals allegedly demanded a ransom of $50 million. The threat actors also published extracts of the company\u2019s financial data on REvil ransomware site.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Check out this article on <a href=\"https:\/\/cheapsslsecurity.com\/blog\/what-is-ransomware-how-do-you-prevent-it\/\">ransomware<\/a> to learn more about this type of malware, how it works, and how to prevent it.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">2.&nbsp;Computer Viruses<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">A computer virus is a malicious code that attaches itself to critical hard drive files or executables. When a victim runs the infected files or installs an infected program, they inadvertently activate the virus.<\/p>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"alignright size-large is-resized\"><img decoding=\"async\" src=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/types-of-malware-viruses-statistics-1024x660.png\" alt=\"A virus statistic screenshot using data from the FBI IC3\" class=\"wp-image-6972\" width=\"434\" height=\"280\" srcset=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/types-of-malware-viruses-statistics-1024x660.png 1024w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/types-of-malware-viruses-statistics-300x193.png 300w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/types-of-malware-viruses-statistics-768x495.png 768w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/types-of-malware-viruses-statistics-1536x990.png 1536w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/types-of-malware-viruses-statistics.png 1695w\" sizes=\"(max-width: 434px) 100vw, 434px\" \/><figcaption>Data source: FBI IC3 Internet Crime Report 2020.<\/figcaption><\/figure><\/div>\n\n\n\n<p class=\"wp-block-paragraph\">A virus is, perhaps, the most recognizable kind of malware in the general public. Whenever a normal person (non-geeky kind) talks about any kind of malware, they often use the terms \u201cvirus\u201d and \u201cmalware\u201d interchangeably. Although a virus is a type of malware, you now know that malware includes many different types of malware, including but not limited to viruses.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Because computer viruses typically attach themselves to legitimate programs and files, they\u2019re difficult to detect and remove. A micro-organism requires a human host to infect and spread further. In much the same way, a computer virus also needs a human to install or run the infected program\/file to infect the system and spread to other computers. As the virus infects other files, the only way to clear them out is to remove the infected programs or files from the system or quarantine them.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">But how prolific are computer viruses? The FBI IC3 reported 1,423 cases of computer malware\/scareware\/viruses, causing $6.9 million in damage to the U.S. public in 2020 alone. (Note: this estimate does not include ransomware, which the IC3 categorized separately in their report.)<\/p>\n\n\n\n<h4 class=\"wp-block-heading\">An Example of a Well-Known Computer Virus: Thanatos<\/h4>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/www.securityweek.com\/thanatos-ransomware-makes-data-recovery-impossible\">MalwareHunterTeam discovered a ransomware-style virus<\/a> called Thanatos in 2017. This virus could enter your IT systems through seemingly harmless sources, including:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Spam emails,<\/li><li>P2P (peer-to-peer) networks like Torrent or eMule,<\/li><li>Unofficial software download services on free download sites, and<\/li><li>Fake software updates.<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Once the virus enters your system, you\u2019d observe the following changes:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>The infected files have \u201c.THANATOS\u201d as an extension, and you can\u2019t open those files because they\u2019re encrypted.<\/li><li>A file named \u201cREADME.txt\u201d would appear on your desktop, naming the ransom amount ($200 in Bitcoins) and payment directions.<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Unfortunately for their targets, the cybercriminals behind Thanatos wouldn\u2019t bother to decrypt their data even after they paid the ransom. The only way out of this situation is to maintain regular backups that you can rely on in case of infection from Thanatos (or another type of malware).<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">3.&nbsp;Computer Worms<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Next on our list of the types of malware you should know is a type of malware whose name belies its danger. A computer worm is a malicious code that attaches itself in a program, executables, or critical hard drive files. Contrary to a computer virus, a worm is designed to run and self-replicate without a trigger, enabling it to send itself to other systems via email or networks to infect them.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Although they\u2019re similar to viruses, worms are even more formidable. Unlike a virus, a worm can spread without a host. While a virus needs a host (like a browser, word processor, or executable) to replicate, a worm can self-replicate without requiring anything to trigger it. It can run, copy, and send copies of itself to other victims on its own.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Worms are some of the most dangerous and costly types of malicious software. Worms can weigh down your device or network by doing one or more activities:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Modify, delete or steal your files and data,<\/li><li>Install backdoors to allow hackers access to your device or other IT systems, and<\/li><li>Replicate itself or inject other malicious software onto network-connected devices.<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Some of the well-known computer worms include:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Stuxnet,<\/li><li>Wannacry,<\/li><li>Cryptolocker,<\/li><li>ILOVEYOU,<\/li><li>Code Red, and<\/li><li>Slammer.<\/li><\/ul>\n\n\n\n<h4 class=\"wp-block-heading\">A Well-Known Example of a Computer Worm: Mydoom<\/h4>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/www.hp.com\/us-en\/shop\/tech-takes\/top-ten-worst-computer-viruses-in-history\">HP Tech Takes<\/a> regards Mydoom among the worst malware outbreaks in history. Mydoom is a worm that cybercriminals embed in email attachments to spread via infected systems\u2019 users\u2019 email contacts. Mydoom.A was first discovered and then Mydoom.B followed soon after. All devices infected with Mydoom.A were automatically infected with Mydoom.B without the need for additional emails.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Cybercriminals used Mydoom-infected systems to launch a DDoS (distributed denial of service) attack against the websites of the SCO Group and Microsoft on two days in February 2004:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Systems infected with Mydoom.A launched attacks against sco.com on Feb. 1.<\/li><li>Systems infected with Mydoom.B launched attacks against microsoft.com on Feb. 3.<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">According to <a href=\"https:\/\/www.computerworld.com\/article\/2574435\/sco-offers--250-000-reward-for-arrest-of-mydoom-worm-author.html#:~:text=SCO%20said%20it's%20offering%20a,during%20the%20past%2010%20months\">Computer World<\/a>, both the SCO Group (now Xinuos) and Microsoft offered six-digit bounties to anyone who could give any information on the worms\u2019 creator. Mydoom was reportedly responsible for slowing down internet speeds because of the bandwidth required to carry out the DDoS attacks.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">At its peak, Mydoom self-propagated in one of every 12 emails sent and HP Tech Takes estimates the combined losses resulting from both Mydoom variants in 2004 was $38 billion. After more than 16 years of the creation, <a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/notorious-mydoom-worm-still-on-autopilot-after-15-years\/\">Mydoom is still active<\/a>. <a href=\"https:\/\/unit42.paloaltonetworks.com\/mydoom-still-active-in-2019\/\">Unit 42\u2019s report<\/a> indicates that it sent 465,896 emails between January and June 2019.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">4.&nbsp;Trojans<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Trojan horses are types of malware that masquerade as legitimate software programs, software updates, and files. Using a disguise allows a trojan to enter your device or network by essentially walking through the front door. Some trojans are hard to detect, which makes them difficult for traditional antivirus tools to remove. But once it enters your IT system, the trojan can take total control and may even use your device\u2019s resources as part of a larger botnet. &nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">First mentioned in the Greek poem <em>Odyssey<\/em>, the Trojan Horse story is one of the classics known to all regardless of geographical borders. It describes how the Greek soldiers won the war for the city of Troy by hiding in a giant wooden horse offered as an offering to the goddess Athena. The 10-year war finally came to an end because of the ruse.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Whether the Trojan horse is a myth or a fact is best left to historians, but computer trojans are definitively real and equally frightening. Trojan malware is much like this Trojan Horse of old \u2014 it relies on trickery. Threat actors disguise trojans as legitimate code or software programs to trick people into downloading and installing them.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Like a virus, a trojan needs the victim to execute the host code for it to activate. <a href=\"https:\/\/blog.malwarebytes.com\/threats\/remote-access-trojan-rat\/\">Remote access trojans (RATs)<\/a> are variants of trojans that are popular among cybercriminals. These types of malware allow threat actors to control victims\u2019 devices remotely and, without their knowledge, will move on to infect the rest of their network. Trojans are so common and easy to write that they\u2019re readily available on the dark web at low prices.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/go.kaspersky.com\/rs\/802-IJN-240\/images\/KSB_statistics_2020_en.pdf\">Kaspersky Labs<\/a> identified the top malicious threats detected on user\u2019s computers. Their data shows that the total number of trojans residing on users\u2019 systems far exceed any other types of malware:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"740\" height=\"540\" src=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/malware-threat-detections-kaspersky.png\" alt=\"Types of malware graphic: A pie chart that breaks down Kaspersky threat detections by malware types.\" class=\"wp-image-6973\" srcset=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/malware-threat-detections-kaspersky.png 740w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/malware-threat-detections-kaspersky-300x219.png 300w\" sizes=\"(max-width: 740px) 100vw, 740px\" \/><figcaption>Data source: Kaspersky Labs.<\/figcaption><\/figure>\n\n\n\n<h4 class=\"wp-block-heading\">An Example of a Well-Known Trojan: Zeus<\/h4>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/www.digitaldefense.com\/blog\/zeus-trojan-what-it-is-how-to-prevent-it-digital-defense\/\">Zeus<\/a>, also known as ZeUs or Zbot, is a notorious trojan variant that cybercriminals used to steal banking information to deploy ransomware such as CryptoLocker. This typically involved the use of fake technical support pop-up ads that would appear on users\u2019 devices. The ads would make users believe their devices were infected with malware. However, their devices weren\u2019t infected until they clicked on the misleading pop-ups!<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This type of malware infected countless computer systems, including those belonging to government organizations and companies such as:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Amazon,<\/li><li>NASA,<\/li><li>U.S. Department of Transportation (DoT),<\/li><li>Monster.com, and<\/li><li>Cisco.<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">In October 2010, <a href=\"https:\/\/archives.fbi.gov\/archives\/news\/stories\/2010\/october\/cyber-banking-fraud\">the FBI announced<\/a> that Zeus had successfully infected computers in eastern Europe. Zeus can still infect weak systems around the world. There are many other Trojans built on the basic code of Zeus that are active today.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">5.&nbsp;Fileless Malware<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Number five on our list of the types of malware you should know is a bit tricky and misleading. <a href=\"https:\/\/us.norton.com\/internetsecurity-malware-what-is-fileless-malware..html\">Norton describes fileless malware<\/a> as a memory-based malware that \u201cpiggybacks\u201d on legitimate programs, applications and scripts. That\u2019s because, unlike traditional malware that relies on executable files to house its code, this memory-based type of malicious software only uses a dropper to get its party started initially.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Fileless malware resides in the memory and runs in the memory without making any apparent changes to the system files. Because it doesn\u2019t rely on files and leaves no footprints, it\u2019s difficult to detect remove. Normally, anti-malware software scans suspicious files to protect the computer. Threat actors stay under the radar of anti-malware software by not adding new files to the host device. &nbsp;&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Many types of fileless malware take advantage of Microsoft Windows PowerShell, a legitimate tool used by administrators for configuration management and task automation. PowerShell becomes the bridge through which the actors can gain access to infected device(s).<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Let\u2019s break down a typical chain of events in a fileless malware attack:<\/p>\n\n\n\n<ol class=\"wp-block-list\" type=\"1\"><li>A cybercriminal uses social engineering techniques to enter the victim\u2019s computer (such as a through a phishing email or a malicious app link)<\/li><li>Once the victim clicks on the attachment or link, the malware attaches itself to one or more whitelisted programs.<\/li><li>The malware downloads and installs Flash to access your PowerShell.<\/li><li>Your PowerShell is then used by a command-and-control (C&amp;C) server to download a script onto your device.<\/li><li>PowerShell now acts as a tool to collect the user data and send it to the bad guys.<\/li><\/ol>\n\n\n\n<p class=\"wp-block-paragraph\">Here\u2019s a quick visual example that demonstrates how a fileless malware attack works:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"1024\" height=\"864\" src=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/fileless-malware-attack-1024x864.png\" alt=\"A graphic illustrating how a fileless malware attack works\" class=\"wp-image-6974\" srcset=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/fileless-malware-attack-1024x864.png 1024w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/fileless-malware-attack-300x253.png 300w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/fileless-malware-attack-768x648.png 768w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/fileless-malware-attack-554x466.png 554w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/fileless-malware-attack.png 1071w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption>This diagram illustrates the chain of events in a Flash-utilizing fileless malware attack.<\/figcaption><\/figure>\n\n\n\n<h4 class=\"wp-block-heading\">An Example of a Fileless Malware Attack: Cobalt Kitty<\/h4>\n\n\n\n<p class=\"wp-block-paragraph\">Let\u2019s explore one fileless malware attack example to give you greater clarity. A recent attack, called <a href=\"https:\/\/www.cybereason.com\/blog\/operation-cobalt-kitty-apt\">Cobalt Kitty<\/a>, was carried out on a global corporation based in Asia by OceanLotus Group. According to information published by Cybereason, it appears this attack involved common elements of fileless malware attacks:<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">6.&nbsp;Adware<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Adware, also known as ad-supporting software, is a type of malware that developers use to displays ads on your device without your permission. It\u2019s an easy way for them to make money through the revenue they receive from advertisers. While some variants of adware are harmless, others can be used to deliver other types of malware.<\/p>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"alignright size-large is-resized\"><img decoding=\"async\" src=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/types-of-malware-malwarebytes-adware-statistics.png\" alt=\"An adware statistics graphic that highlights data from Malwarebytes\" class=\"wp-image-6975\" width=\"423\" height=\"413\" srcset=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/types-of-malware-malwarebytes-adware-statistics.png 737w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/types-of-malware-malwarebytes-adware-statistics-300x293.png 300w\" sizes=\"(max-width: 423px) 100vw, 423px\" \/><figcaption>Data source: <a href=\"https:\/\/resources.malwarebytes.com\/files\/2021\/02\/MWB_StateOfMalwareReport2021.pdf\">Malwarebytes\u2019 2021 State of Malware Report<\/a>.<\/figcaption><\/figure><\/div>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/press.avast.com\/adware-accounts-for-72-of-all-mobile-malware\">Avast<\/a> reports that mobile malware made up 72% of the adware they observed in the data gathered between October and December 2019.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Adware tracks your online searches and just about everything you do online to create a database. They can then either use this database or turn around and sell it to any interested party for a price. Advertisers use your data to send you personalized adverts. The major drawback of adware is the loss of privacy. Even though your keystrokes are not captured, you lose all your privacy due to adware.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The advertisers pay for adware based on:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li><strong>Pay-per-view: <\/strong>Every time an advert is shown to you, the advertiser pays \u2014 even if you don\u2019t click on it.<\/li><li><strong>Pay-per-click: <\/strong>In this method, the advertiser pays only when you click on the ad.<\/li><li><strong>Pay-per-install: <\/strong>The advertiser will pay every time the bundled software is installed on your device.<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Check out this article on <a href=\"http:\/\/cheapsslsecurity.com\/blog\/what-is-adware-how-do-you-prevent-it\">adware<\/a> to learn more about this type of malware, how it works, and how to prevent it.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">7.&nbsp;Cryptojacking Malware<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Cryptojacking malware is a type of malicious software that cybercriminals use to hijack your device\u2019s processing and power resources. Why? As the name would imply, it\u2019s to mine cryptocurrencies or even steal other people\u2019s cryptocurrencies from their wallets. This malware, which is designed to remain hidden and causes your device to operate as part of a larger botnet, operates on your device without your knowledge to carry out what\u2019s known as cryptojacking attacks (i.e., malicious cryptomining).<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Cryptomining is frequently a blockchain-related process that involves using computers to solve critical mathematical equations. When successful, it results in the generation of a cryptocurrency unit. But cryptomining requires vast quantities of power and computing resources \u2014 far more than the average cybercrimimal has access to on their own. As a way to compensate, cybercriminals will use cryptojacking malware to infect other people\u2019s devices and use their resources without the device owners&#8217; knowledge.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">When cybercriminals activate the cryptomining programs on users\u2019 infected devices, the users may experience sudden hikes in their power and data usage. Their devices will become slower and might have a shortened life. A typical cryptomining farm can include a collection of devices, including:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Mobile phones,<\/li><li>Laptops,<\/li><li>PCs,<\/li><li>Servers, and<\/li><li>IoT devices.<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Cryptomining apps are generally categorized under PUAs (potentially unwanted applications) or sometimes fall within the category of trojans. A more advanced form of cryptomining uses your browser to carry out the task. The following picture shows the process of cryptojacking. &nbsp;&nbsp;<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"1024\" height=\"516\" src=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/cryptojacking-malware-1024x516.png\" alt=\"Types of malware graphic: An illustration that shows how infected devices are used for cryptojacking.\" class=\"wp-image-6976\" srcset=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/cryptojacking-malware-1024x516.png 1024w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/cryptojacking-malware-300x151.png 300w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/cryptojacking-malware-768x387.png 768w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/cryptojacking-malware.png 1315w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption>A graphic representation of how cryptojacking works by capitalizing on cryptojacking malware-infected devices.<\/figcaption><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">As you can see in the above figure, all kinds of devices that can be connected to the internet are used by cybercriminals to launch cryptomining malware. For obvious reasons, the criminals will keep all the cryptocurrency mined from the attack while the victims will be left with gigantic electricity and data bills along with the damage to their devices.<\/p>\n\n\n\n<h4 class=\"wp-block-heading\">An Example of Cryptojacking Malware: Malicious AMIs<\/h4>\n\n\n\n<p class=\"wp-block-paragraph\">Researchers at the incident readiness &amp; response company <a href=\"https:\/\/medium.com\/mitiga-io\/security-advisory-mitiga-recommends-all-aws-customers-running-community-amis-to-verify-them-for-5c3e8b47d2d8\">Mitiga sounded an alarm<\/a> in August 2020 when they discovered malicious crypto-miner code embedded within an open-source Amazon machine image (AMIs). The AMI, which was published in the Amazon Web Services (AWS) Marketplace where other users could find and use them, would cause EC2 server instances that use the AMI to mine Monero coins (cryptocurrency) for them. Mitiga warned AWS users only to use AMIs from trusted sources.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">8.&nbsp;Botnet Malware<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/staysafeonline.org\/stay-safe-online\/identity-theft-fraud-cybercrime\/malware-and-botnets\/\">Botnet malware<\/a> is a category that describes different types of malware that infect devices with the purpose of controlling them as part of a larger network. This can include trojans, viruses, worms, and some other types of malware.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The infected devices that comprise a <a href=\"https:\/\/usa.kaspersky.com\/resource-center\/threats\/botnet-attacks\">botnet<\/a> are known as zombies or bots. Cybercriminals use these infected devices to carry out a variety of large-scale, malicious attacks \u2014 everything from attacking websites to stealing data. Some botnets are even available for other cybercriminals to rent or use as a service-for-hire.<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li><strong>DDoS attacks: <\/strong>When bad guys want to carry out large-scale cyberattacks, they often use botnets to do so. In a traditional DDoS attack, these devices act as puppets that the cybercriminals use to overwhelm their targets\u2019 servers with traffic. <em>Voila!<\/em> The targeted servers crash as a result.<\/li><li><strong>Brute force attacks: <\/strong>In this type of attack, bots use username-password combinations to try to gain access to accounts on different websites, services or web apps. All the bots have different sets of combinations. The idea is to guess the correct username and password by trying out enough number of combinations.<\/li><li><strong>Botnet-as-a-service: <\/strong>Cybercriminals who want to monetize their bot network in other ways sometimes rent out the botnets or hire out their botnet services to others on the dark web. This means that these networks of infected devices can work for virtually anyone who hires them.<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/www.imperva.com\/resources\/resource-library\/reports\/bad-bot-report\/\">Bad Bot Report 2021 by Imperva<\/a> found that the United States was the country where 40.5% of the bad bots originate. The below figure shows the top 10 bad bot originating ISPs of 2020 according to the same report:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"740\" height=\"447\" src=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/bad-bots-originating-isps.png\" alt=\"Types of malware graphic: A bar chart showing the ISPs that Imperva says had the highest number of &quot;bad bots&quot; in 2020 \" class=\"wp-image-6977\" srcset=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/bad-bots-originating-isps.png 740w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/bad-bots-originating-isps-300x181.png 300w\" sizes=\"(max-width: 740px) 100vw, 740px\" \/><figcaption>Data source: Imperva&#8217;s Bad Bot Report 2021.<\/figcaption><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">Some well-known botnet malware variants include:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Mirai,<\/li><li>Qbot, and<\/li><li>Kaiten.<\/li><\/ul>\n\n\n\n<h4 class=\"wp-block-heading\">An Example of Botnet Malware in Action: Mirai Botnet<\/h4>\n\n\n\n<p class=\"wp-block-paragraph\">The Mirai botnet is a botnet of devices that are infected with the Mirai malicious code. Mirai, which means \u201cFuture\u201d in Japanese, is responsible for many seemingly futuristic cyber attacks. For example, the <a href=\"https:\/\/www.theguardian.com\/technology\/2016\/oct\/26\/ddos-attack-dyn-mirai-botnet\">Mirai botnet was responsible for bringing down much the internet in the U.S.<\/a> via a large-scale DDoS attack back in 2016.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In the attack, cybercriminals used the Mirai botnet to coordinate and carry out the massive, targeted attack on servers controlled by Dyn. The company, which was responsible for controlling much of the internet\u2019s DNS infrastructure, faced an estimated 1.2Tbps DDoS attack.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">9.&nbsp;&nbsp;&nbsp;&nbsp; Rootkits<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Rootkits are remote access tools (RATs) or software that provide remote administrative access to a user\u2019s device \u2014 with or without their knowledge. As a one of the types of malware we\u2019ll cover in this article, just know that rootkits are stealthy; they can modify files and hide other types of malicious software within your device. Because they can conceal themselves within your OS or the antivirus tools that you rely on to find them, this makes rootkits incredibly difficult for many tools to detect.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Cybercriminals typically pair rootkits with two other tools to help them deploy:<\/p>\n\n\n\n<ol class=\"wp-block-list\" type=\"1\"><li><strong>Dropper<\/strong> \u2014 This is the executable that installs the rootkit. Cybercriminals often deliver malicious links and files to transmit droppers,<\/li><li><strong>Loader<\/strong> \u2014 This is the nasty little sucker that installs the rootkit onto a target device or IT system.<\/li><\/ol>\n\n\n\n<p class=\"wp-block-paragraph\">There are several different types of rootkits:<\/p>\n\n\n\n<ol class=\"wp-block-list\" type=\"1\"><li><strong>Hardware rootkits. <\/strong>This type of rootkit, also known as a \u201cfirmware rootkit,\u201d uses hardware (such as your device\u2019s hard drive) or even your BIOS to gain a foothold in your system. It alters your device\u2019s firmware and allows cybercriminals to steal data and monitor your behaviors.<\/li><li><strong>Bootloader rootkits. <\/strong>This type of rootkit, also sometimes called a \u201cbootkit\u201d rootkit, affects the bootloader of the victim\u2019s computer. The bootloader is what tells your device how to load its operating system. This means that whenever you restart your device, it automatically consults the bootloader and, therefore, loads the rootkit as well.<\/li><li><strong>Memory rootkit.<\/strong> This rootkit hides in your computer\u2019s random access memory (RAM). Although this rootkit will disappear once you reboot your system, it will carry out malicious activities in the background without your knowledge in the meantime.<\/li><li><strong>Application rootkits.<\/strong> This rootkit, also known as a user rootkit, operates at the application layer and affects your system libraries. As such, it can swap your device\u2019s standard files with rootkit ones and attach itself to the programs you likely use daily. This rootkit gives bad guys access to these programs without you being any wiser.<\/li><li><strong>Kernel mode rootkits. <\/strong>These type of rootkits affect the very core of your computer systems and can change how your devices function. They have access to your system through the very core and, hence, they can steal your personal information easily.<\/li><\/ol>\n\n\n\n<p class=\"wp-block-paragraph\">This remote access tool can be useful in many ways. But in the hands of the wrong person, this useful tool becomes a weapon. A cybercriminal can use a rootkit to manipulate a device by attaining administrative access. So, while you go about your business on the device, you\u2019ll be unaware that a rootkit is lurking in the recesses of your system, making changes and collecting data.<\/p>\n\n\n\n<h4 class=\"wp-block-heading\">An Example of a Real-World Rootkit in Action: <\/h4>\n\n\n\n<p class=\"wp-block-paragraph\">Remember the <a href=\"https:\/\/www.wired.com\/2014\/11\/countdown-to-zero-day-stuxnet\/\">Stuxnet<\/a> we mentioned earlier? Stuxnet was developed by the U.S. and Israel that targeted the centrifuges at Iran\u2019s nuclear facilities more than a decade ago. The goal was to cause those systems to malfunction while displaying data that led its operators to believe it was functioning normally. <\/p>\n\n\n\n<p class=\"wp-block-paragraph\">So, if Stuxnet is a worm, why are we talking about it here? It&#8217;s because this worm relied on multiple rootkits to conceal its presence and activities so it could operate without detection.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">10.&nbsp; Spyware<\/h3>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"alignright size-large is-resized\"><img decoding=\"async\" src=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/types-of-malware-spyware-detections-malwarebytes.png\" alt=\"Types of malware graphic: A spyware statistics graphic using data from Malwarebytes\" class=\"wp-image-6978\" width=\"497\" height=\"321\" srcset=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/types-of-malware-spyware-detections-malwarebytes.png 740w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/types-of-malware-spyware-detections-malwarebytes-300x194.png 300w\" sizes=\"(max-width: 497px) 100vw, 497px\" \/><figcaption>Data source: Malwarebytes<\/figcaption><\/figure><\/div>\n\n\n\n<p class=\"wp-block-paragraph\">Last but not least on our list of malicious software\u2026 Spyware is a classification of malware that can be used for neutral or malicious monitoring purposes. It overlaps with some other types of malware, such as trojans and adware, and includes many types (such as keyloggers and password stealers to browser hijackers and banking trojans). Its overall purpose is to track your online and offline activities and collect sensitive data cybercriminals can use.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Companies use spyware to keep track of the employees during working hours. However, criminals use this for their own benefit to spy on unsuspecting users and to collect their information, including:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Account login credentials,<\/li><li>Credit card details,<\/li><li>Identity documents,<\/li><li>Account PINs and OTPs,<\/li><li>Browsing habits, and<\/li><li>Email addresses.<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/resources.malwarebytes.com\/files\/2021\/02\/MWB_StateOfMalwareReport2021.pdf\">Malwarebytes<\/a> observed that consumer spyware detections rose 24% from 1.96 million cases in 2019 to 2.43 million in 2020. On the other hand, business spyware increased 51% from 292,525 in 2019 to 440,368 in 2020 according to the same report. Of course, the information collected through spyware is used to commit other crimes, including:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Identity theft,<\/li><li>Credit card cloning,<\/li><li>Hacking email accounts and websites,<\/li><li>Selling sensitive or proprietary information to competitors, and<\/li><li>Selling login credentials to third parties.<\/li><\/ul>\n\n\n\n<h4 class=\"wp-block-heading\">An Example of Real-World Spyware in Action<\/h4>\n\n\n\n<p class=\"wp-block-paragraph\">Remember how we mentioned earlier that not all spyware is developed or used only by cybercriminals? FinFisher (aka FinSpy) is a type of spyware that a German IT company developed outside the shadows. It primarily targets mobile devices but does also have a desktop version that targets multiple operating systems.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This type of spyware gives a bad guy almost unfettered access to an infected device. <a href=\"https:\/\/usa.kaspersky.com\/blog\/finspy-commercial-spyware\/18053\/\">Kaspersky reports<\/a> that FinFisher allows threat actors to monitor and records a wide variety of information on a compromised device, including the device\u2019s:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Physical location,<\/li><li>Contacts and call histories,<\/li><li>VoIP calls and phone calls it makes or receives,<\/li><li>Incoming and outbound SMS text messages and instant messages, and<\/li><li>Mobile app communications and file transmissions.<\/li><\/ul>\n\n\n\n<h2 class=\"wp-block-heading\">Final Thoughts on the Types of Malware<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Whether it\u2019s stealing data or controlling users\u2019 devices, different types of malware serve various purposes for cybercriminals. And as long as there are bad people who have malicious intentions, then there\u2019s likely always to be uses for nefarious software and code. The best way to protect yourself is to:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Implement reliable cybersecurity tools to protect your network, user devices, and other endpoints.<\/li><li>Keep your software, hardware and other resources patched and up to date.<\/li><li>Teach your employees to recognize threats and to not engage with <a href=\"https:\/\/cheapsslsecurity.com\/blog\/what-is-a-malicious-url\/\">malicious URLs<\/a> and emails.<\/li><li>Avoid open-source software, AMIs, and code from unknown or untrusted sources.<\/li><li>Only download apps and updates via official sources (such as manufacturer websites or Google Play and Apple App stores).<\/li><\/ul>\n","protected":false},"excerpt":{"rendered":"<p>McAfee Labs reports observing more than 1.4 billion malware detections in Q4 2020 \u2014 and that number that doesn\u2019t include Q1-Q3 2020 data! We\u2019ll explore 10 types of malicious software you need to know to protect yourself in 2021. The threat of malware is growing every minute. McAfee Labs reports observing 648 malware threats per<\/p>\n","protected":false},"author":8,"featured_media":6982,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[5],"tags":[446],"class_list":["post-6966","post","type-post","status-publish","format-standard","has-post-thumbnail","category-ssl-pki","tag-types-of-malware"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.4 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>10 Types of Malware Your IT Guy Warned You About<\/title>\n<meta name=\"description\" content=\"What are the different types of malware? We break them all down and provide you with real-world examples of how they&#039;ve been used in attacks.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/cheapsslsecurity.com\/blog\/10-types-of-malware-your-it-guy-warned-you-about\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"10 Types of Malware Your IT Guy Warned You About\" \/>\n<meta property=\"og:description\" content=\"What are the different types of malware? We break them all down and provide you with real-world examples of how they&#039;ve been used in attacks.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/cheapsslsecurity.com\/blog\/10-types-of-malware-your-it-guy-warned-you-about\/\" \/>\n<meta property=\"og:site_name\" content=\"Savvy Security\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/cheapsslsecurities\" \/>\n<meta property=\"article:published_time\" content=\"2021-05-14T15:58:00+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2022-03-22T06:00:51+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/types-of-malware-feature.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1600\" \/>\n\t<meta property=\"og:image:height\" content=\"1000\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Savvy Security\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@sslsecurity\" \/>\n<meta name=\"twitter:site\" content=\"@sslsecurity\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Savvy Security\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"21 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/10-types-of-malware-your-it-guy-warned-you-about\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/10-types-of-malware-your-it-guy-warned-you-about\\\/\"},\"author\":{\"name\":\"Savvy Security\",\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/#\\\/schema\\\/person\\\/1ce9a5743b7f25b5be6e4972864b4493\"},\"headline\":\"10 Types of Malware Your IT Guy Warned You About\",\"datePublished\":\"2021-05-14T15:58:00+00:00\",\"dateModified\":\"2022-03-22T06:00:51+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/10-types-of-malware-your-it-guy-warned-you-about\\\/\"},\"wordCount\":4365,\"image\":{\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/10-types-of-malware-your-it-guy-warned-you-about\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/05\\\/types-of-malware-feature.jpg\",\"keywords\":[\"Types of Malware\"],\"articleSection\":[\"SSL &amp; PKI\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/10-types-of-malware-your-it-guy-warned-you-about\\\/\",\"url\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/10-types-of-malware-your-it-guy-warned-you-about\\\/\",\"name\":\"10 Types of Malware Your IT Guy Warned You About\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/10-types-of-malware-your-it-guy-warned-you-about\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/10-types-of-malware-your-it-guy-warned-you-about\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/05\\\/types-of-malware-feature.jpg\",\"datePublished\":\"2021-05-14T15:58:00+00:00\",\"dateModified\":\"2022-03-22T06:00:51+00:00\",\"author\":{\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/#\\\/schema\\\/person\\\/1ce9a5743b7f25b5be6e4972864b4493\"},\"description\":\"What are the different types of malware? We break them all down and provide you with real-world examples of how they've been used in attacks.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/10-types-of-malware-your-it-guy-warned-you-about\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/10-types-of-malware-your-it-guy-warned-you-about\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/10-types-of-malware-your-it-guy-warned-you-about\\\/#primaryimage\",\"url\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/05\\\/types-of-malware-feature.jpg\",\"contentUrl\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/05\\\/types-of-malware-feature.jpg\",\"width\":1600,\"height\":1000},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/10-types-of-malware-your-it-guy-warned-you-about\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"10 Types of Malware Your IT Guy Warned You About\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/\",\"name\":\"Savvy Security\",\"description\":\"Practical cybersecurity advice\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/#\\\/schema\\\/person\\\/1ce9a5743b7f25b5be6e4972864b4493\",\"name\":\"Savvy Security\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/4e5539150b16b5af1d22136f03dedda89a96babb3e9b5ceb18c2bde4e1dcba57?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/4e5539150b16b5af1d22136f03dedda89a96babb3e9b5ceb18c2bde4e1dcba57?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/4e5539150b16b5af1d22136f03dedda89a96babb3e9b5ceb18c2bde4e1dcba57?s=96&d=mm&r=g\",\"caption\":\"Savvy Security\"},\"description\":\"Welcome to Savvy Security, a blog focused on providing practical cybersecurity advice for website owners and small businesses. Our team brings you the latest news, best practices and tips you can use to protect your business...without a multi-million dollar budget or 24\\\/7 security teams.\",\"sameAs\":[\"blogadmin\"],\"url\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/author\\\/blogadmin\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"10 Types of Malware Your IT Guy Warned You About","description":"What are the different types of malware? We break them all down and provide you with real-world examples of how they've been used in attacks.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/cheapsslsecurity.com\/blog\/10-types-of-malware-your-it-guy-warned-you-about\/","og_locale":"en_US","og_type":"article","og_title":"10 Types of Malware Your IT Guy Warned You About","og_description":"What are the different types of malware? We break them all down and provide you with real-world examples of how they've been used in attacks.","og_url":"https:\/\/cheapsslsecurity.com\/blog\/10-types-of-malware-your-it-guy-warned-you-about\/","og_site_name":"Savvy Security","article_publisher":"https:\/\/www.facebook.com\/cheapsslsecurities","article_published_time":"2021-05-14T15:58:00+00:00","article_modified_time":"2022-03-22T06:00:51+00:00","og_image":[{"width":1600,"height":1000,"url":"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/types-of-malware-feature.jpg","type":"image\/jpeg"}],"author":"Savvy Security","twitter_card":"summary_large_image","twitter_creator":"@sslsecurity","twitter_site":"@sslsecurity","twitter_misc":{"Written by":"Savvy Security","Est. reading time":"21 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/cheapsslsecurity.com\/blog\/10-types-of-malware-your-it-guy-warned-you-about\/#article","isPartOf":{"@id":"https:\/\/cheapsslsecurity.com\/blog\/10-types-of-malware-your-it-guy-warned-you-about\/"},"author":{"name":"Savvy Security","@id":"https:\/\/cheapsslsecurity.com\/blog\/#\/schema\/person\/1ce9a5743b7f25b5be6e4972864b4493"},"headline":"10 Types of Malware Your IT Guy Warned You About","datePublished":"2021-05-14T15:58:00+00:00","dateModified":"2022-03-22T06:00:51+00:00","mainEntityOfPage":{"@id":"https:\/\/cheapsslsecurity.com\/blog\/10-types-of-malware-your-it-guy-warned-you-about\/"},"wordCount":4365,"image":{"@id":"https:\/\/cheapsslsecurity.com\/blog\/10-types-of-malware-your-it-guy-warned-you-about\/#primaryimage"},"thumbnailUrl":"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/types-of-malware-feature.jpg","keywords":["Types of Malware"],"articleSection":["SSL &amp; PKI"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/cheapsslsecurity.com\/blog\/10-types-of-malware-your-it-guy-warned-you-about\/","url":"https:\/\/cheapsslsecurity.com\/blog\/10-types-of-malware-your-it-guy-warned-you-about\/","name":"10 Types of Malware Your IT Guy Warned You About","isPartOf":{"@id":"https:\/\/cheapsslsecurity.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/cheapsslsecurity.com\/blog\/10-types-of-malware-your-it-guy-warned-you-about\/#primaryimage"},"image":{"@id":"https:\/\/cheapsslsecurity.com\/blog\/10-types-of-malware-your-it-guy-warned-you-about\/#primaryimage"},"thumbnailUrl":"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/types-of-malware-feature.jpg","datePublished":"2021-05-14T15:58:00+00:00","dateModified":"2022-03-22T06:00:51+00:00","author":{"@id":"https:\/\/cheapsslsecurity.com\/blog\/#\/schema\/person\/1ce9a5743b7f25b5be6e4972864b4493"},"description":"What are the different types of malware? We break them all down and provide you with real-world examples of how they've been used in attacks.","breadcrumb":{"@id":"https:\/\/cheapsslsecurity.com\/blog\/10-types-of-malware-your-it-guy-warned-you-about\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/cheapsslsecurity.com\/blog\/10-types-of-malware-your-it-guy-warned-you-about\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/cheapsslsecurity.com\/blog\/10-types-of-malware-your-it-guy-warned-you-about\/#primaryimage","url":"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/types-of-malware-feature.jpg","contentUrl":"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/05\/types-of-malware-feature.jpg","width":1600,"height":1000},{"@type":"BreadcrumbList","@id":"https:\/\/cheapsslsecurity.com\/blog\/10-types-of-malware-your-it-guy-warned-you-about\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/cheapsslsecurity.com\/blog\/"},{"@type":"ListItem","position":2,"name":"10 Types of Malware Your IT Guy Warned You About"}]},{"@type":"WebSite","@id":"https:\/\/cheapsslsecurity.com\/blog\/#website","url":"https:\/\/cheapsslsecurity.com\/blog\/","name":"Savvy Security","description":"Practical cybersecurity advice","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/cheapsslsecurity.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/cheapsslsecurity.com\/blog\/#\/schema\/person\/1ce9a5743b7f25b5be6e4972864b4493","name":"Savvy Security","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/4e5539150b16b5af1d22136f03dedda89a96babb3e9b5ceb18c2bde4e1dcba57?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/4e5539150b16b5af1d22136f03dedda89a96babb3e9b5ceb18c2bde4e1dcba57?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/4e5539150b16b5af1d22136f03dedda89a96babb3e9b5ceb18c2bde4e1dcba57?s=96&d=mm&r=g","caption":"Savvy Security"},"description":"Welcome to Savvy Security, a blog focused on providing practical cybersecurity advice for website owners and small businesses. Our team brings you the latest news, best practices and tips you can use to protect your business...without a multi-million dollar budget or 24\/7 security teams.","sameAs":["blogadmin"],"url":"https:\/\/cheapsslsecurity.com\/blog\/author\/blogadmin\/"}]}},"amp_enabled":true,"_links":{"self":[{"href":"https:\/\/cheapsslsecurity.com\/blog\/wp-json\/wp\/v2\/posts\/6966","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cheapsslsecurity.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cheapsslsecurity.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cheapsslsecurity.com\/blog\/wp-json\/wp\/v2\/users\/8"}],"replies":[{"embeddable":true,"href":"https:\/\/cheapsslsecurity.com\/blog\/wp-json\/wp\/v2\/comments?post=6966"}],"version-history":[{"count":0,"href":"https:\/\/cheapsslsecurity.com\/blog\/wp-json\/wp\/v2\/posts\/6966\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cheapsslsecurity.com\/blog\/wp-json\/wp\/v2\/media\/6982"}],"wp:attachment":[{"href":"https:\/\/cheapsslsecurity.com\/blog\/wp-json\/wp\/v2\/media?parent=6966"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cheapsslsecurity.com\/blog\/wp-json\/wp\/v2\/categories?post=6966"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cheapsslsecurity.com\/blog\/wp-json\/wp\/v2\/tags?post=6966"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}