Personal tools
You are here: Home wikidblog Bankash
« August 2008 »
Mo Tu We Th Fr Sa Su
        1 2 3
4 5 6 7 8 9 10
11 12 13 14 15 16 17
18 19 20 21 22 23 24
25 26 27 28 29 30 31
Recent comments
Re:Security and Oil admin Apr 25, 2008
Re:Security and Oil Paul feet Apr 24, 2008
Re:100% open source admin Apr 22, 2008
Re:100% open source Adam Apr 22, 2008
Re:Capital Gains Tax Rates and Entrepreneurs Lance Oct 23, 2007
 

Bankash

Dave Evans from Teros pointed out that the PWSteal.Bankash.D trojan includes two lists: one for sites that
have their keystrokes logged and one for sites that don't. The trojan
makes it easy to target VPN services or ecommerce sites. I should think
it would be easy to add the default domain of your ISP as well via a
simple script.

Eventually, one of these trojans will be fairly successful in gathering
passwords for corporate access and the attackers will target
corporations that don't use strong authentication for remote access.
Remember that what they are after is money. They may try to get it by
stealing your HR file for identities that can be stolen, they may try to
get it by blackmailing you - or perhaps both. They don't really care.

You can see the technical details over at Symantec.

The URL to Trackback this entry is:
http://www.wikidsystems.com/WiKIDBlog/27/tbping
Add comment

You can add a comment by filling out the form below. Plain text formatting. Comments and Trackbacks are moderated.

(Required)
(Required)
(Required)
(Required)
This helps us prevent automated spamming.