A new variant of a powerful type of malware that steals online banking credentials is targeting German speakers. The malware, called Emotet, was spotted around last June by security vendors. It is notable for its ability to sniff out credentials sent over encrypted HTTPS connections by tapping into eight network APIs. It’s distributed through spam messages, which either contain a link to a website hosting the malware or a PDF icon that is actually the malware. Spam messages can be tricky to filter because the messages originate from real email accounts, Microsoft’s HeungSoo Kang wrote.”]