Win32/64:Napolar: New trojan shines on the cyber crime-scene

From Botnets.fr
Jump to navigation Jump to search

(Publication) Google search: [1]

Win32/64:Napolar: New trojan shines on the cyber crime-scene
Botnet Solar, Napolar
Malware
Botnet/malware group
Exploit kits
Services
Feature
Distribution vector
Target
Origin
Campaign
Operation/Working group
Vulnerability
CCProtocol
Date 2013 / 2013-09-25
Editor/Conference Avast
Link https://blog.avast.com/2013/09/25/win3264napolar-new-trojan-shines-on-the-cyber-crime-scene/ blog.avast.com (blog.avast.com Archive copy)
Author Peter Kálnai
Type

Abstract

In recent weeks, malware samples resolved as Win32/64:Napolar from AVAST’s name pools generated a lot of hits within our file and network shields. Independently, we observed an advertising campaign of a new Trojan dubbed Solarbot that started around May 2013. This campaign did not run through shady hacking forums as we are used to, but instead it ran through a website indexed in the main search engines. The website is called http://solarbot.net and presents its offer with a professional looking design.

Bibtex

 @misc{Lua error: Cannot create process: proc_open(/dev/null): failed to open stream: Operation not permitted2013BFR1366,
   editor = {Avast},
   author = {Peter Kálnai},
   title = {Win32/64:Napolar: New trojan shines on the cyber crime-scene},
   date = {25},
   month = Sep,
   year = {2013},
   howpublished = {\url{https://blog.avast.com/2013/09/25/win3264napolar-new-trojan-shines-on-the-cyber-crime-scene/ blog.avast.com}},
 }