Contact us today!
866-348-2602

Total Tech Care Blog

Total Tech Care has been serving Florida since 2001, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

Did You Know Your Router Can be Infected?

Did You Know Your Router Can be Infected?

A new type of malware is targeting routers in what is considered a large enough threat that even the FBI is addressing it. Even worse, a router isn’t necessarily a device that you think would be vulnerable to attack from a hacker. What can you do to keep your business’ Internet access points secure from hacking attacks? Let’s dig in to the details about what the VPNFilter malware does and how you can address it.

Explaining VPNFilter
The malware in question, VPNFilter, hides in routers for both individual users and small businesses with the intention of persisting even if the device has been rebooted. VPNFilter targets devices that are Ukraine-based most of the time, but others have been known to fall victim to this as well. It’s thought that the VPNFilter malware originated from a group called Sofacy. The malware itself takes three steps to become an issue for your organization.

The first is that the malware sets itself up so that it will persist even if the device is rebooted or turned off. The second stage of the attack consists of the malware installing permissions for itself to change router settings, manage files, and execute commands. This allows the router to essentially brick itself, leading to considerable connectivity problems. The final stage of this malware lets the hackers look at the data packets passing to and from the device, as well as the ability to issue commands and communicate through the Tor web browser.

The reason why the FBI recommends resetting your router is because the second and third steps are wiped when you do so, but the first stage remains regardless.

Is Your Router Affected?
While not all routers are affected, there is still a sizeable list of confirmed contaminated devices. Some of the affected brands include:

  • Asus
  • D-Link
  • Huawei
  • Linksys
  • MikroTik
  • Netgear
  • TP-Link
  • Ubiquiti
  • Upvel
  • ZTE

For a comprehensive list of affected devices, you can see specifics for each brand at Symantec’s website: https://www.symantec.com/blogs/threat-intelligence/vpnfilter-iot-malware

How to Fix It
The best way to resolve these issues with VPNFilter is to perform a factory reset for your router, which completely deletes anything installed during the first stage of the threat. If the router’s manufacturer has administered a patch for the vulnerability, you can also install it following a factory reset so that you’ll never have to deal with this vulnerability again.

For more updates and tips on some of the latest threats, keep an eye on Total Tech Care’s blog.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Guest
Wednesday, 30 April 2025
If you'd like to register, please fill in the username, password and name fields.

Blog Archive

Sign Up for Our Newsletter

  • First Name *
  • Last Name *

      Free Consultation

      Sign up today for a
      FREE Network Consultation

      How secure is your IT infrastructure?
      Let us evaluate it for free!

      Sign up Now!

      Free Consultation
       

      Tag Cloud

      Security Tip of the Week Technology Best Practices Business Computing Cloud Privacy Hackers Productivity Hosted Solutions Efficiency Software Network Security Business Google Microsoft Internet Email Malware Workplace Tips Backup Innovation Data User Tips Computer Mobile Devices IT Services Hardware Disaster Recovery Android VoIP communications IT Support Business Continuity Smartphones Communication Miscellaneous Smartphone Mobile Device Network Browser Small Business Collaboration Productivity Quick Tips Cybersecurity Users Business Management Managed IT Services Upgrade Windows Phishing Ransomware Data Backup Outsourced IT Windows 10 Office Server Save Money Cloud Computing Data Recovery Windows 10 Passwords Social Media Saving Money Holiday Gadgets Tech Term Chrome Virtualization Managed IT Services Managed Service Microsoft Office Automation Cybercrime Operating System Artificial Intelligence Computers Facebook BYOD Mobile Device Management Networking Health Internet of Things IT Support Hacking Wi-Fi Covid-19 Information Managed Service Provider Alert Spam Office 365 Remote Telephone Systems Information Technology Router Bandwidth Recovery Employer-Employee Relationship BDR Social Engineering Mobility Application Data Breach Law Enforcement Human Resources Big Data Remote Monitoring Password Money App Encryption Mobile Computing History Applications Paperless Office VPN Government Private Cloud Remote Computing Managed IT Mobile Office How To Apps Office Tips Training Data Storage Patch Management Blockchain Windows 7 Gmail Word Settings Avoiding Downtime Servers Two-factor Authentication Infrastructure Voice over Internet Protocol Mouse Data Security HaaS Bring Your Own Device Data Management Work/Life Balance Flexibility Marketing WiFi Wireless IT solutions Entertainment Google Drive Website Vulnerability Budget Managed Services USB Scam Staff Software as a Service Display Keyboard Telephone System Machine Learning Connectivity Firewall Remote Work Employee/Employer Relationship Vendor Management Virtual Reality RMM Apple Save Time Social User Error Meetings Cleaning Data Protection Risk Management End of Support Hacker Education Physical Security Safety The Internet of Things Conferencing Vendor HIPAA Lithium-ion battery Sports Redundancy Remote Workers Audit Worker Proactive IT Customer Service IT Management Environment IT Consultant Best Practice Processor YouTube Update Botnet Black Market Fax Server IT Plan Hard Drive Humor Google Docs SaaS Identity Theft Unsupported Software Document Management Wireless Technology Computing Solid State Drive Charger How to Downtime Network Congestion Compliance Computer Care eWaste OneNote Augmented Reality Current Events Data storage Fraud Telephony Automobile Samsung Digital Signage Remote Worker Computing Infrastructure Cryptocurrency Value Going Green Wearable Technology Virus Hard Drives Retail Unified Threat Management Instant Messaging Spam Blocking Electronic Medical Records Procurement Comparison Net Neutrality Computer Accessories Robot Excel Workplace Strategy Battery Help Desk Biometrics Hiring/Firing Shadow IT CES Printing Virtual Desktop Legal Business Technology Internet Exlporer Content Management Access Control DDoS Printer Bluetooth Managed Services Provider SharePoint PDF Virtual Assistant Authentication Database Business Intelligence Analyitcs Relocation Cables Windows Server 2008 R2 Programming Customer relationships Video Games Project Management Email Best Practices Public Computer Nanotechnology IT Assessment Telecommuting Manufacturing Regulations Worker Commute Transportation Cortana Digital Signature Managed IT Service Antivirus Security Cameras Experience Computer Fan Computer Tips Rootkit Scalability Warranty Virtual CIO OneDrive Biometric Security Windows 8 Business Owner Workers HVAC Peripheral Benefits Google Apps IT service NarrowBand Analysis Using Data FENG Digital Security Cameras Search Administrator IBM Devices Copiers 5G Tablet Flash iPhone Enterprise Content Management Quick Tip Smart Technology Domains Accountants Consultant Smartwatch MSP Ergonomics Software Tips Microchip Supercomputer Thought Leadership Development IaaS Credit Cards OLED Analytics Maintenance Bloatware Sync Emails Files Password Management PCI DSS Password Manager Virtual Machine Chromecast Fiber Optics Best Available Multi-Factor Security Employee 2FA Tablets Search Engine Twitter Messaging WIndows 7 Cabling Entrepreneur Netflix Colocation NIST Policy Two Factor Authentication Uninterrupted Power Supply Business Mangement Hypervisor Smart Tech Trend Micro Trending Root Cause Analysis Dark mode HBO Knowledge Monitor Addiction SMS Music Amazon Default App Shortcut Cost Management Skype Procedure Recycling Saving Time Practices Shopping Google Search Social Networking Data loss Wiring dark theme Outlook Leadership Reputation Cache AI User Troubleshooting Streaming Media Amazon Web Services IT Infrastructure PowerPoint Windows Media Player Bing Start Menu Content Safe Mode FinTech Tech Support Criminal Loyalty Laptop Hosted Computing Social Network Running Cable Screen Mirroring Techology GDPR Memory Frequently Asked Questions Customers Wireless Internet Managing Stress Books Online Shopping Investment Mobile Audiobook Windows 10s File Sharing Employees Employee/Employer Relationships Touchpad Inventory Specifications ISP Cameras Cast Camera Windows 365 Tip of the week webinar Wire Video Conferencing Emergency Evernote ROI Travel Shortcuts Professional Services Politics Public Cloud Advertising Sales Employer Employee Relationship Bitcoin Assessment Personal Millennials Cryptomining Science Printers Point of Sale Windows Server 2008 Smart Office Supply Chain Management Notifications Wireless Charging Tools Monitoring Batteries Virtual Private Network Windows 8.1 Television Digitize Distributed Denial of Service Workforce Printer Server Customer Relationship Management

      Top Blog

      The reasoning for this is simple: you want to make sure that operations are proceeding as intended, even if you’re not there. If you completely check out from the workplace every time you leave, you could return from your vacation to a complete and total disaster that may have been prevented with y...
      QR-Code