
Kaspersky uncovers Efimer trojan targeting organizations through phishing emails
Kaspersky has discovered a rapidly escalating malicious campaign targeting corporate users with Efimer — a trojan designed to steal and replace cryptocurrency wallet addresses. Initial versions of Efimer appeared in October 2024 and were distributed through compromised WordPress websites. However, in June 2025, the malware began spreading via phishing emails as well. Disguised as a legal firm, the attackers send emails threatening recipients with lawsuits over alleged domain name patent violations to trick them into downloading the malware. This approach allows Efimer to build its own malicious infrastructure and continue spreading to new devices.
An example of the malicious email
'This Trojan is notable for its dual approach, to spreading — targeting both individual users and corporate environments with different tactics. For private users, attackers use torrent files pretending to be popular movies to lure victims, while in corporate settings, they rely on fraudulent emails containing legal threats. Crucially, in both cases, compromise only occurs if the user actively downloads and executes the malicious file,' explains Artyom Ushkov, threat researcher at Kaspersky.
Kaspersky recommends corporate and individual users:
Refrain from downloading torrent files from unknown or untrusted sources.
Recipients should carefully verify the legitimacy of email senders and ensure antivirus databases are regularly updated.
Avoid clicking on links or opening attachments in unsolicited or spam emails to reduce the risk of malware infection.
Stick to best practice including regular software updates, enforcing strong passwords and two-factor authentication, as well as continuous monitoring for signs of compromise.
Install a trusted security solution and follow its recommendations. Secure solutions will solve the majority of problems automatically and send alerts.
For developers and website administrators: implementing robust security measures to protect their infrastructure from unauthorized access and malware propagation is essential.
Find the full report on Securelist.com.
About Kaspersky
Kaspersky is a global cybersecurity and digital privacy company founded in 1997. With over a billion devices protected to date from emerging cyberthreats and targeted attacks, Kaspersky's deep threat intelligence and security expertise is constantly transforming into innovative solutions and services to protect individuals, businesses, critical infrastructure and governments around the globe. The company's comprehensive security portfolio includes leading digital life protection for personal devices, specialized security products and services for companies, as well as Cyber Immune solutions to fight sophisticated and evolving digital threats. We help millions of individuals and nearly 200,000 corporate clients protect what matters most to them. Learn more at www.kaspersky.com.

Try Our AI Features
Explore what Daily8 AI can do for you:
Comments
No comments yet...
Related Articles


The National
28 minutes ago
- The National
Air India to end flights between Delhi and Washington
Air India will stop commercial flights between New Delhi and Washington, the company said on Monday, citing a "combination of operational factors". The airline, owned by India's Tata Group, cited a looming shortage of planes and Pakistan's decision to close airspace as the main reasons for the cancellation of flights to and from the US capital. "The airline commenced retrofitting 26 of its Boeing 787-8 aircraft last month," read a press release from India's flagship airline. "This extensive retrofit programme, aimed at significantly enhancing customer experience, necessitates a prolonged unavailability of multiple aircraft at any given time until at least end of 2026." Pakistan's closure of airspace affected logistics planning, "leading to longer flight routings and increased operational complexity", Air India said. Since April, Indian airlines have faced longer international flights and higher fuel costs as they have been forced to reroute their aircraft since Pakistan closed its airspace to its neighbouring country amid tension over a deadly terrorist attack in Kashmir, the control of which each nation claims. Air India said passengers who have already booked on to flights now cancelled will be contacted and offered alternative arrangements. When contacted by The National, customer service representatives for the airline said they had not been notified of the development and were therefore unable to make alternative arrangements for passengers, though they warned they would probably soon be updated by their management. According to Air India's website, the company employs more than 30,000 people and operates at least 300 aircraft, with 55 domestic and 48 international destinations. In June, Air India Flight AI 171 crashed shortly after taking off from Ahmedabad Airport, in Gujarat, north-west India, killing 241 people on board plus a number of people on the ground. Only one person, a passenger, survived. Though still under investigation, a 15-page preliminary report by India's Aircraft Accident Investigation Bureau suggested the plane's fuel control switches were turned off, cutting fuel to the engines and causing a loss of thrust shortly after take-off.


Zawya
4 hours ago
- Zawya
India plans credit guarantees for small firms, exporters hit by US tariffs, sources say
India is planning to provide credit guarantees for loans overdue up to 90 days to small businesses and exporters, amid higher tariffs imposed by the U.S., two government sources told Reuters. The federal finance ministry has proposed to provide 10-15% credit guarantees to banks for advancing loans to stressed small businesses, with turnover up to 5 billion rupees, that fall under the Reserve Bank of India's (RBI) so-called special mention accounts (SMA), the sources said. Loans that have not been repaid for 0-90 days fall under RBI's SMA 0-2 category, but are not classified as non-performing assets. India's small businesses still struggle with limited access to timely and adequate formal credit. The government will allocate about 40 billion rupees for providing guarantees to banks, both the sources said. The scheme is designed for firms that are stressed due to external factors "beyond their control", and the eligibility criteria is being firmed up, according to the sources. The criteria will cover small exporters who are currently facing uncertainties due to higher tariffs imposed by the U.S., a key market for Indian exports, the second source said. The government estimates that about 55% of its merchandise exports to the United States will be subject to the tariff imposed by President Donald Trump's administration. The finance ministry did not immediately respond to an email seeking comment. Separately, the Indian government is preparing a scheme to provide term loans for small exporters that would be backed by a government guarantee of a maximum 70-75%, the second source said. The scheme was announced by India's finance minister in the budget for 2025/26. (Reporting by Nikunj Ohri; Editing by Janane Venkatraman and Anil D'Silva)


Zawya
4 hours ago
- Zawya
India concludes FTA negotiations with Oman: Minister
New Delhi – Negotiations for a free trade agreement (FTA) between India and Oman, officially referred to as the Comprehensive Economic Partnership Agreement (CEPA), which began in 2023, have concluded. 'India-Oman CEPA negotiations have concluded,' India's Minister of State for Commerce and Industry, Jitin Prasada, informed the Rajya Sabha (Upper House of Parliament) in a written reply this week in response to a question from Congress Party member Jebi Mather Hisham regarding India's trade agreements. However, the minister did not specify any date or timeline for the signing ceremony of the agreement. Oman is India's third-largest export destination among the GCC countries. India already has a similar agreement in place with another GCC member, the United Arab Emirates, which came into effect in May 2022. India's key imports from Oman include petroleum products and urea, which together account for over 70% of total imports. Other significant imports include polymers of propylene and ethylene, petroleum coke, gypsum, chemicals, and iron and steel. The two countries are strategic partners. Bilateral trade and investments have expanded significantly since diplomatic relations were established in 1955, which were upgraded to a strategic partnership in 2008. In his reply, Prasada also outlined India's progress in strengthening trade ties over the past five years, noting that five major FTAs had been signed and several more under negotiation. The agreements concluded in the last five years include the India–Mauritius Comprehensive Economic Cooperation and Partnership Agreement (CECPA) implemented in 2021; the India–UAE CEPA and the India–Australia Economic Cooperation and Trade Agreement (ECTA) in 2022; the India–European Free Trade Association (EFTA) Trade and Economic Partnership Agreement (TEPA) in 2024; and the India–UK Comprehensive Economic and Trade Agreement (CETA) signed in 2025 but yet to come into force. © Apex Press and Publishing Provided by SyndiGate Media Inc. (