Particle.news
Download on the App Store

WhatsApp Malware ‘Maverick’ Targets Brazil, Steals Banking Data

Researchers identify a Brazil-only wave using ZIP shortcuts sent via WhatsApp Web.

Overview

  • Maverick arrives as a ZIP attachment containing a malicious .LNK shortcut that executes the trojan when opened on a computer.
  • The malware records keystrokes and screenshots, fabricates credential pages, and seeks banking logins and tokens.
  • It checks language, time zone, and region settings and proceeds only on systems configured for Brazil.
  • Once active, it uses WhatsApp Web to automatically resend the infected file to the victim’s contacts and groups.
  • Kaspersky reported more than 62,000 blocked infection attempts in Brazil in early October, and experts advise avoiding unexpected attachments, enabling two-step verification, running full antivirus scans, changing passwords, and reinstalling the OS if necessary.