Tuesday December 2, 2008 10:36 PM AEST
Latest Comments
"I feel it with you guys. These irritating interruptions on privacy MUST be stopped. It is a ..."
by Jan Wilmans | Dec 2, 2008 7:11 PM
 
"My AVG WILL NOT UPDATE"
by James Downs | Dec 2, 2008 5:58 AM
 
"Concerned man's comments seem to intimate that if I'm using agents all will be well but the ..."
by Werner K | Nov 26, 2008 8:36 PM
 
"That will enhance Microsoft Office system, including SharePoint - good platform for enterprise ..."
by SGE | Nov 25, 2008 3:29 PM
 
"how many users allow per session? because the digital persona password manager allows only 10 ..."
by Daniel | Nov 25, 2008 12:14 AM

Agent Trojan targets Asian gamers

  • Email a Friend
  • Print Page
Agent Trojan targets Asian gamers
By Staff Writers
Nov 16, 2007 10:10 AM
Tags: Agent | Trojan | targets | Asian | gamers
Win32/PSW.Agent.NDP accounted for 5.73 per cent of the detections made by ESET's ThreatSense.Net tool, which reports detection statistics from millions of client computers around the world.

The program steals information from several sources, before sending the data back to a remote attacker.

"Agent.NDP is an interesting threat as it does not exploit any security vulnerability and does not contain its own mailing engine," said Pierre Marc Bureau, a researcher at ESET.

"Trojans are commonly used to perform identity theft and other malicious actions. Agent.NDP seems to target Chinese online gamers in an attempt to steal information such as usernames and passwords."

ESET explained that the Trojan is probably installed after being downloaded from a website, almost certainly under the guise of another application.

Agent.NDP then copies itself into the victim's temporary folder and writes a DLL in the same folder. It then injects the DLL code into explorer.exe to monitor system execution and find vulnerable information.

ESET's second highest ranking threat for October was INF/Autorun, accounting for 3.45 per cent of all detections.

INF/Autorun describes a variety of malware that uses the autorun.inf file which contains information to run programs automatically when removable media are inserted into a computer.

Copyright © 2008 vnunet.com

 
Ads by Google
Thoughts on this article? Add a comment below.
Be the first to comment on this article.

Report this comment as offensive:

   * Indicates information we require to process your submission.

Name: *
Email: *
Reason for offense: *
Your report will not be displayed.  
Name:
*
 
Email:
(will not be displayed)
*
 
Comment:
(HTML not permitted)
*
 
Validation
*

Enter the code you see below:

 

 
 
 
 
 
Tripwire - Click here to win an iTouch
 
 
Access Control Whitepapers