Explore the latest news and trends  

Sign up for our weekly security newsletter


Be the first to receive important updates on security





Send

New Backdoor Trojan LATENTBOT Discovered


FireEye the security company states, its researchers have discovered one fresh sample of malicious software known as LATENTBOT that while spreading fast has been infecting computers in USA, UK, Poland, Brazil and South Korea during 2015. The malware, a backdoor Trojan, enables its creators to access almost everything they wish to from a PC-network even as it remains undetectable. And because of its very good obfuscation capability, the bot has managed to stay on around corporate systems most of the time during its attack period.

Moreover according to a report by SecurityWeek, LATENTBOT, which attends more to staying unidentified, has greatly been successful; it started its infections from mid-2013. As it's with malware developers, they design programs which even the most updated, real-time AV software sometimes cannot detect, to say the least, eliminate. LATENTBOT hardly leaves behind any clue, while keeps watch on its victims unnoticed followed with even severely harming the hard disk, thereby rendering the computer useless.

The malware obfuscates through many stages, wipes MBR, features a concealed VNC connection, while carries a modular setup, which lets updates to be made without difficulty on victims' systems. It's also capable of installing Pony malware that works like an infostealer, eliminates decrypted contents from memory once they are used, conceals programs inside a separate desktop, as well as ransomlock similarities. Scmagazine.com published this, December 14, 2015.

Researchers opine that albeit LATENTBOT has high obfuscation features with it carrying out more than one process injection, it makes so much noise that it's easily detectible inside memory provided an accurate behavior-based program is used.

The Straits Times posts that concealed malware is as well infiltrating mobile devices; as Singapore's ABS (Association of Banks) cautions people using Android to remain vigilant of what looks like one WhatsApp update, however, in reality contains malware which tries to steal credit card details of the user. For this, the malware intercepts the OPT (an abbreviation for one-time password) that banks dispatch over SMS for users to log into their Internet accounts. Quite similar to LATENTBOT, this malicious program is invisible to ordinary viewing, while contrarily it hasn't been around that long.

ยป SPAMfighter News - 12/21/2015

3 simple steps to update drivers on your Windows PCSlow PC? Optimize your Slow PC with SLOW-PCfighter!Email Cluttered with Spam? Free Spam Filter!

Dear Reader

We are happy to see you are reading our IT Security News.

We do believe, that the foundation for a good work environment starts with fast, secure and high performing computers. If you agree, then you should take a look at our Business Solutions to Spam Filter & Antivirus for even the latest version of Exchange Servers - your colleagues will appreciate it!

Go back to previous page
Next