iEntry 10th Anniversary RSS Archive

IT Management Begins With Security
SecurityProNews > News > Security News > Bots Hunting Bank Information
Search:
[ news_security_news ]

Bots Hunting Bank Information



David Utter
Staff Writer
2006-03-28

SecurityProNews: Insider Reports Insider Reports RSS Feed


Verisign's security research firm iDefense thinks the Metafisher bot (aka Spy-Agent and PWS) has a presence on a million computers and could leap into millions more.

The password-stealing Metafisher bot has been tracked for some time by iDefense according to an Enterprise ITPlanet report. Although iDefense has broken the encryption used by the bot for receiving FTP control commands from an attacker, it is not yet known how well iDefense's efforts to shutdown sites used by the bot have fared.

Symantec described PWSteal.Metafisher as " a Trojan horse that exploits the Microsoft Windows Graphics Rendering Engine WMF Format Unspecified Code Execution Vulnerability to download remote files. The Trojan also sends bank account and personal information to remote servers."

While patches exist for the flaw, there is concern that enough unpatched systems exist to worry security researchers about massive infections and attacks. Windows IT Pro posted as to why Metafisher is cause for concern:

[Ken Dunham of iDefense] said that what makes MetaFisher more dangerous than other phishing bots is its ability to use HTML injection techniques to gather sensitive financial information after a person authenticates to a targeted bank acount.

"MetaFisher has been spreading, under the radar, for months, compromising hundreds of thousands if not millions of accounts for financial fraud," said Dunham. "[It's] the most sophisticated bot to date, targeting financials in Spain, the United Kingdom, and Germany."

Symantec lists the Threat Metrics for Metafisher as low, as a patch exists and antivirus programs can detect the Trojan.

---
Tag: |

Add to | DiggThis | Yahoo! My Web

Get all the updates in RSS:





About the Author:
David Utter is a business and technology writer for SecurityProNews and WebProNews.

More news_security_news Articles

SecurityProNews: Insider Reports Insider Reports RSS Feed


Get Your Site Submitted for Free in the World's Largest B2B Directory!

Email Address:
* URL:
*
*Indicates Mandatory Field

Terms & Conditions

iEntry Featured Services: Jayde Member Services | Forums | Freeware | Advertise with Us

Virus Warnings

Subscribe to
SecurityProNews FREE!



[ more newsletters ]

article resources
Search Articles:
[advanced search]

WebProWorld.com
Get in-touch with industry experts and leaders
Post your site for review by expert and peers
Ask Security, IT, Development and Design questions

Free Membership: Join Now!

Visit WebProWorld.com

Titan Quest Forum
The #1 Titan Quest forum
Halo 3 Forum
The best Halo, Halo 2, Halo 3 forum
Nintendo Wii
Nintendo Wii news and views
Mac Software
The best in OS X freeware
Graphics Forum
Your source for graphic tutorials
SecurityProNews.com | Breaking eBusiness News Get Your IT Questions Answered - Click Here SecurityProNews News Feeds