Slashdot Mirror


Researchers Find Hybrid GozNym Malware, 24 Financial Institutions Already Affected (securityintelligence.com)

An anonymous reader writes: Researchers are warning about a new hybrid Trojan -- dubbed GozNym-- which is a combination of Nymaim dropper and the Gozi financial malware. IBM researchers say that the malware has been designed to target banks, ecommerce websites, and retail banking, adding that GozNym has already targeted 22 financial institutions in the United States and two in Canada. A ComputerWorld report sheds more light into it, "Nymaim is what researchers call a dropper. Its purpose is to download and run other malware programs on infected computers. It is usually distributed through Web-based exploits launched from compromised websites. Nymaim uses detection evasion techniques such as encryption, anti-VM and anti-debugging routines, and control flow obfuscation. In the past, it has primarily been used to install ransomware on computers. The integration between Nymaim and Gozi became complete in April, when a new version was discovered that combined code from both threats in a single new Trojan -- GozNym."

5 of 21 comments (clear)

  1. Once again, no discussion of what is vulnerable by david.emery · · Score: 1

    But the discussion of "DLLs" does provide a hint.

    1. Re:Once again, no discussion of what is vulnerable by fhage · · Score: 1
      IBM® Security Trusteer Pinpoint Malware Detection and IBM® Security Trusteer Rapport® is the technical answer.

      My burning question; Does installing a Security Trusteer make my iWatch more valuable?

  2. Combo Plate by fustakrakich · · Score: 2

    By "compromised websites", you must mean ad servers, right? The kind the "industry" insist we not block? Well, to be redundant, the safest browser is probably Lynx.

    --
    “He’s not deformed, he’s just drunk!”
    1. Re:Combo Plate by KGIII · · Score: 1

      Well, elinks isn't too bad - and you can use your mouse!

      --
      "So long and thanks for all the fish."
  3. Hybrid Trojan infects computers? by khz6955 · · Score: 1

    There is only one solution, the Government must ban OS X, Android and Linux from the Internet :)