The Cybercrime Directorate informs citizens about the emergence of malicious software, type Trojan.
The malicious software steals user information (usernames, mails, passwords), takes instant screenshots of the screen (printscreens), gains access to the camera, downloads and executes files, updates its configuration and «silently» forwards to a remote server – server the information that has been collected.
The Trojan spreads via infected and unwanted email messages and to execute it the computer must already have the program «Java Runtime Environment» installed
Citizens – internet users are requested to avoid the infection of their computers by malicious software, and to take the necessary protective measures
The Cybercrime Unit informs citizens – internet users about the appearance of malicious software, type « Trojan» (Trojan) in our country, which spreads via infected and unwanted email messages «Spam e-mails».
Regarding the capabilities of this Trojan, it can:
- to steal user information (usernames, mails, passwords),
- to receive instant screenshots of the screen (printscreens),
- to gain access to the camera, to download and execute files,
- to update its configuration and
- to silently forward the information that has been collected to a remote server – (server),
- to enter electronic computers «camouflaged», as a regular program.
Specifically, the software of type « java archive file » runs in the background and creates security gaps in the system, granting access to third parties, and to execute it the computer must already have the program «Java Runtime Environment» installed.
In order to avoid infection from the aforementioned malicious software, the Cybercrime Division calls on citizens to take the necessary digital protection and security measures, specifically:
- Use firewalls capable of preventing incoming connections to services that should not be publicly available and only allow individual outbound services.
- Use passwords that are difficult to recover.
- Use updated «αντιικά» protection programs, genuine software programs and perform regular «updates».
- Grant the lowest level of privileges to users and programs where required in order to execute a process.
- Disable the «AutoPlay» function, in order to prevent automatic execution of files on the network and on drives, and enable the «read-only» option in cases where write access is not required.
- Do not open the attached files of email messages whose origin and content they do not know, and configure their email server so that entry is not allowed or messages with attached files of type exe, .vbs, .jar, .bat, .scr, which are widely used for virus propagation, are automatically deleted.
- Disable the file sharing capability in cases where it is not required.
- Create regular backups «backup» of the device's files, on external storage media
It is recalled that citizens can communicate, anonymously or by name, with the Cybercrime Prosecution Directorate in order to provide information or report illegal or reprehensible acts or activities carried out via the Internet, at the following contact details:
- By phone: 11188
- By sending an e-mail to: ccu@cybercrimeunit.gov.gr
- Through the application for smart phones: CYBERKΙD
- Via twitter: @CyberAlertGR

