April 2 This blog has been updated with McAfee’s NSP detection. See end of blog. While monitoring a Russian underground forum recently, we came across a discussion about a Trojan for sale that can steal credit card information from machines running Windows for financial transactions and credit card payments. The malware, vSkimmer, can detect the Read more…
Tags: botnet, credit card skimming, Dexter, trojan, vSkimmer, whitelist, windows
Every year around tax season, we see a huge spike in tax-related social engineering attacks. Social engineering is a type of cyber attack that attempts to psychologically manipulate users, tricking them into downloading malicious software or divulging confidential information. Very often, these attacks take the form of a fraudulent email created to mimic an email Read more…
Tags: Consumer Threat Notices, mcafee all access, McAfee Mobile Security, phishing, scam, trojan
Attackers use all kinds of attack vectors to steal sensitive information from their targets. Their efforts are not limited to only zero-day vulnerabilities. Malware authors often exploit old vulnerabilities because a large number of organizations still use old vulnerable software. The Trojan Travnet, which steals information, is a classic example of malware that takes advantage Read more…
Tags: APT, bots, CVE-2010-3333, data theft, malware, nettraveler, Travnet, trojan
It’s a common misconception that mobile malware is a problem limited to users in a particular geographical region such as China or Eastern Europe. Last week, McAfee Labs mobile research department received a mobile malware sample that targets Android mobile phone users in South Korea. The sample pretends to be a popular coffee shop coupon Read more…
Tags: Android, sms, South Korea, trojan
I hope you have all had the same great start to the year as I have had, although I must say that since the beginning of 2013 my agenda has been incredibly packed. Time flies; we are already in February and I have just returned from a trip to Moscow where great things are happening; Read more…
Tags: 2013 threat predictions, Citadel, epo, Global Threat Intellgence, GTI, intel, McAfee, Security Connected, SIEM, trojan
Zeus “banking” malware and its variants have been making headlines in recent months. One variant, the Citadel Trojan, has now taken the spotlight with the news of its withdrawal from the open crimeware market. Recently the author of Citadel, Aquabox, has been banned from a large online forum that sells malware and other services to Read more…
Tags: Citadel, Denmark, government, Japan, Poetry Group, Poland, trojan
A new “ransomware” campaign uses a novel approach to extort money from Internet users. It locks your computer and displays a localized webpage that covers your desktop and demands the payment of a fine for the possession of banned material. The following system changes may indicate the presence of this malware: <startup folder>\<random file name>.dll.lnk Read more…
Tags: malware, Ransom-AAY.gen.b, Ransomware, trojan
Iranian infrastructure has been on the radar of cyberattackers for a couple of years. We have already witnessed organized and sophisticated attacks such as Stuxnet, Duqu, and similar assaults. Now we have seen yet another attack against Iran, this one primarily targeting the Microsoft SQL Server databases of some Iranian financial software. This attack has Read more…
Tags: Data Protection, financial software, Iran, malware, McAfee Labs, Microsoft SQL Server database, Narilam, trojan
Writing Android malware can be a lucrative business for a criminal. One can create an SMS-sending Trojan horse or a botnet client and sit back to collect the money. It can also be a very brief business, leading one directly to jail. The crooks behind Android/OneClickFraud (malware that extorts users) and Android/DougaLeaker (malware that steals Read more…
Tags: adult entertainment, Android, arrests, dating site, law enforcement, mobile malware, Ransomware, trojan
Updated – July 6th at 1pm pacific McAfee releases a free tool to help consumers identify the risk of DNS Trojan and modify their Internet settings by ‘DNSChanger’ Trojan On July 9, 2012, the FBI will be shutting down Internet servers that had previously allowed millions of Internet users, who were infected by the DNSChanger Read more…
Tags: consumer internet users, DNS, DNS changer, DNSChanger, FBI warning, Internet Access cut off, Internet settings, July 9, McAfee free tool, trojan
Posts tagged under trojan