Latest Comments
"My AVG WILL NOT UPDATE"
by James Downs | Dec 2, 2008 5:58 AM
 
"Concerned man's comments seem to intimate that if I'm using agents all will be well but the ..."
by Werner K | Nov 26, 2008 8:36 PM
 
"That will enhance Microsoft Office system, including SharePoint - good platform for enterprise ..."
by SGE | Nov 25, 2008 3:29 PM
 
"how many users allow per session? because the digital persona password manager allows only 10 ..."
by Daniel | Nov 25, 2008 12:14 AM
 
"security through obscurity...shows how detached HIPAA is from reality."
by priceOfFishInChina | Nov 20, 2008 1:19 PM

'Wave of Trojans' goes on the rampage

  • Email a Friend
  • Print Page
'Wave of Trojans' goes on the rampage
By Robert Jaques
Jun 29, 2007 12:25 PM
Tags: 'Wave | of | Trojans' | goes | on | the | rampage |
IT managers in companies of all sizes have been warned of a "wave of Trojans " that threatens their infrastructures.

The warning from security firm Finjan follows reports of a US$1,000 crime-ware development kit, including a Trojan, being sold to would-be hackers.

"This trend highlights the alarming growth of crime-ware toolkits being sold to hackers," said Yuval Ben-Itzhak, chief technology officer at Finjan.

"Such crime-ware is focusing on stealing sensitive business data and sending it back to criminals' servers over encrypted communication channels like SSL in order to go undetected."

Finjan's Malicious Code Research Center pointed to the rapid rise of a new Prg Trojan variant, which it believes may have been developed using a crime-ware toolkit.

The malware relays sensitive data collected during employees' online activity to hacker websites using an SSL-encrypted format.

Research by Don Jackson, of managed security firm SecureWorks, suggests that the Prg crime-ware has been modified using a Trojan development kit to listen for hacker commands on a special TCP/IP port.

These commands allow the hacker to gain remote control of the compromised system. Jackson's analysis of log files on the servers storing the stolen data found that information was coming from corporate PCs.

Copyright © 2008 vnunet.com

 
Ads by Google
Thoughts on this article? Add a comment below.
Be the first to comment on this article.

Report this comment as offensive:

   * Indicates information we require to process your submission.

Name: *
Email: *
Reason for offense: *
Your report will not be displayed.  
Name:
*
 
Email:
(will not be displayed)
*
 
Comment:
(HTML not permitted)
*
 
Validation
*

Enter the code you see below:

 

 
 
 
 
 
Tripwire - Click here to win an iTouch
 
 
Vulnerabilities & Exploits Whitepapers