📜 ⬆️ ⬇️

New Trojan steals money from WebMoney !?

A very interesting topic was raised on the CGM forum (attention! A lot of letters!) ... unfortunately I noticed it only today.

In the last month (sort of) a trojan for WM appeared.
He made, as I understand it, "to order" and antiviruses (Norton 360, NOD32) do not see it.
It seems to be passing through holes in a Java machine, i.e. regular Windows update is not enough. Trojan exposes a root-kit that is not detected by antivirus software. Actually, I was able to find the root-kit only with the help of UnHackMe (http://www.greatis.com/security/, included in RegRun Platinum).
A trojan is shown (it is possible after the money is deposited, but most likely at the same time) - when entering WM keeper, the prog writes that the password is incorrect, and when attempting to initialize with a KWM file, the trojan clears this file.

[... skip nibbled ...]
')
I stole in the area a little more than 2k WMZ. A month ago, there was 16k there, but by a lucky chance just before that moment he brought them out.

quote message from san_piter @ cgm, October 13, 2007 22:03


not that I was interested in the reaction of the habr-community, rather, “warned, it means armed”.

although there are more chances to hear the opinion of WM employees than on CGM: ")

ZY: by the link it is possible to open a window with advertising before getting to the forum ... it's not my fault - this is a CGM that came up with: /

Source: https://habr.com/ru/post/15298/


All Articles