Detection of development assistance program ... trojan
Research experts of Sunbelt Software Inc. said they have just discovered a special program that they believe is used to create new keyloggers and trojans to target customers of credit institutions around the world.

Security experts happened to discover the program on a website that was used to gather information about a variant of a trojan called WinLdra.
It can be said that the above program provides a very easy to use interface in creating a completely new WinLdra trojan variant that can steal credit card numbers or online bank accounts on computers they infecting. Not only is this kind of trojan capable of automatically making electronic payments to transfer money to malicious attacker's account. This trojan development program is extremely easy to use even for hackers who don't have much experience in creating special trojans.
Eric Sites, Sunbelt's vice president for research and development, said this could be the cause of the "flash flood" of WinLdra variations on the Internet over the past few months with huge volumes. information about customers of stolen banks and financial credit institutions.
Until recently, the new WinLdra trojan creation program was officially announced for sale online at www.ratsystems.org . This site is no longer active. Domain ownership is a person named "Semenov Dimitry" living in Russia.
WinLdra is primarily distributed through dangerous websites by exploiting security holes in Microsoft's Internet Explorer browser. Once infected on a user's computer, the trojan is able to send all Windows Protected Storage content information to malicious attackers.
Sunbelt researchers discovered WinLdra Trojan for the first time in August 2005, following the trail of this type of trojan that discovered a whole line that specialized in stealing customer information from good banks. financial credit institutions. But that trojan continues to grow and spread. It can be said that the discovery of this trojan development program is a worthy reward for Sunbelt experts.
So it can be said that WinLdra is an extremely difficult type of trojan because new versions of them are created very quickly and simply with a little skill. A support program is too simple, too easy to use and too easy to install.
In addition, the discovery of this trojan development program also shows that the theft of user account information from banks, financial institutions or credit card numbers is becoming more and more Sophisticated complexity with more tricks.This further confirms the trend because of the financial incentives of hackers today.
You should read it
- Trojan-Downloader_Win32_Agent.nmi
- Carefully stolen information with Trojan - How to disable Trojan
- Malware 'crawls' to hide the barrier
- What is a Trojan? How to avoid trojan attack?
- Trojan-PSW.Win32.OnLineGames.rlh
- Sophisticated spam Trojan unmatched
- The Trojan said the sentence ... 'Farewell' to the victim
- Trojan-Downloader.Win32.Agent.mee
May be interested
- Cell phone users are attacked simultaneouslynew year 2006 has not yet begun for several days, but mobile phone users have suffered from several attacks of trojan programs at the same time.
- Keyboard character detectors spread in more than 50 countriesreal-time anti-spyware software company pc tools has warned users about a dangerous software called keylog-sters, which has gathered sensitive data from so many countries. gender.
- Deep Nyxem.e 'massacre' data periodicallyover the weekend, security firm f-secure warned users about the spread of a new computer worm called nyxem.e with the ability to destroy data information in a number of universal file formats. current transformer.
- Spam protection with trust rating?on monday (january 23), ironport systems introduced a new anti-spam system for email security applications based on senderbase technology platform.
- New IM worm ... chat with the victim himselffor the first time, a worm automatically chat with users via im programs, enticing them to click on a malicious link to attack the victim's computer.
- Sober will return on January 5, 2006verisign idefense has just released a prediction that the next sober virus attack will be on january 5, 2006. this is the 87th anniversary of the founding of the nazi party.