Ramnit Worm Turns into Banking Malware

Malware Ramnit

In January 2010, some banks reported suspicious change in server settings and errors in financial documents sent through their servers. Experts believe that it was caused by a malware named Ramnit and it affects files of operating system and infects files of numerous formats including html and office documents. The malware affects executable files of Windows and spreads itself whenever these files are run. Interestingly

Incoming search terms for the article:

ramnit avast, ramnit kaspersky, ramnit recovery, trusteer pinpoint, trusteer pinpoint review

Another Trojan Bamital Pattern

Screen_2Bshot_2B2011-05-06_2Bat_2B10_50_50_2BAM.png

The other day I detected a handful of Bamital infected clients beaconing out with a different pattern than that listed in EmergingThreats, and thought I’d post something for the masses to consume and be on the lookout for in their networks. Microsoft’s Malware Protection Center, lists a first iteration of the Trojan back in 2009 to do pop-up/injected advertising on behalf of the attacker

Incoming search terms for the article:

bamital domain name, et backdoor win32 shiz