Police Trojan crosses the Atlantic, now targets USA and Canada
(Publication) Google search: [1]
Police Trojan crosses the Atlantic, now targets USA and Canada | |
---|---|
Botnet | Silent Winlocker, Goldenbaks |
Malware | |
Botnet/malware group | |
Exploit kits | |
Services | |
Feature | |
Distribution vector | |
Target | |
Origin | |
Campaign | |
Operation/Working group | |
Vulnerability | |
CCProtocol | |
Date | 2012 / 2012-05-09 |
Editor/Conference | TrendMicro |
Link | http://blog.trendmicro.com/police-trojan-crosses-the-atlantic-now-targets-usa-and-canada/ (Archive copy) |
Author | David Sancho |
Type |
Abstract
“ The Police Trojan has been targeting European users for about a year. It should come as no surprise that the latest incarnations of this obnoxious malware have started targeting the United States and Canada.
In the latest batch of C&C servers we have analyzed, not only has the list of countries increased but also their targets are now more specific. For instance, UKash vouchers are not available in the U.S., thus the U.S. fake police notification that spoofs the Computer Crime & Intellectual Property Section of the U.S. Department of Justice, only mentions PaySafeCard as the accepted payment method. The criminals also took the time in adding plenty of logos of local supermarkets and chain stores where the cash vouchers are available.
Bibtex
@misc{Lua error: Cannot create process: proc_open(/dev/null): failed to open stream: Operation not permitted2012BFR1004, editor = {TrendMicro}, author = {David Sancho}, title = {Police Trojan crosses the Atlantic, now targets USA and Canada}, date = {09}, month = May, year = {2012}, howpublished = {\url{http://blog.trendmicro.com/police-trojan-crosses-the-atlantic-now-targets-usa-and-canada/}}, }