Trojan.Prinimalka: bits and pieces
(Publication) Google search: [1]
Trojan.Prinimalka: bits and pieces | |
---|---|
Botnet | Prinimalka, Gozi |
Malware | |
Botnet/malware group | |
Exploit kits | |
Services | |
Feature | |
Distribution vector | |
Target | |
Origin | |
Campaign | |
Operation/Working group | |
Vulnerability | |
CCProtocol | |
Date | 2012 / 2012-10-29 |
Editor/Conference | Arbor Networks |
Link | http://ddos.arbornetworks.com/2012/10/trojan-prinimalka-bits-and-pieces/ ddos.arbornetworks.com (ddos.arbornetworks.com Archive copy) |
Author | Dennis Schwarz |
Type |
Abstract
“ Trojan.Prinimalka is a banking trojan associated with an attack campaign that received quite a bit of press in October 2012. “Project Blitzkrieg” is “a new cybecriminal [sic] project aimed at recruiting 100 botmasters to help launch a series of lucrative online heists targeting 30 U.S. banks. The Trojan installs a proxy on the victim host and then sends system/web browser details back to the C&C. The botmasters can use this setup to “spoof” banking requests as the unsuspecting banking user.
Bibtex
@misc{Lua error: Cannot create process: proc_open(/dev/null): failed to open stream: Operation not permitted2012BFR1196, editor = {Arbor Networks}, author = {Dennis Schwarz}, title = {Trojan.Prinimalka: bits and pieces}, date = {29}, month = Oct, year = {2012}, howpublished = {\url{http://ddos.arbornetworks.com/2012/10/trojan-prinimalka-bits-and-pieces/ ddos.arbornetworks.com}}, }