The Ultimate Trojan?
Written by Sue Walsh on July 29, 2008A security vendor in the UK has discovered a new trojan. Called Limbo 2, it is designed to steal information from financial institutions and banks. Jacques Erasmus, director of malware research at Prevx says it may be the most sophisticated Trojan ever. The Trojan’s power lies in it’s stealth characteristics. It is able to bypass anti-virus software thanks to it’s own cryptor that obfuscates it.
It also has a unique technique to steal bank information, Erasmus told SCMagazineUS.com. It can inject a code into a live banking site. If you log into a bank, it is able to hijack your connection and adds an extra field into the page.
That extra field records the victims log on and personal bank account details. It also scans the victim’s hard drive for personal info, grabs it, and sends it to it’s botnet control center. Limbo 2 travels in the usual ways: via botnets, in compromised downloads, and web exploits. In the bustling underground world of cybercrime, a user license for it is available for $1300. Yes, in an example of true irony, malware writers actually protect their intellectual property by requiring end user licenses. Honor among thieves indeed! The writers of this “ultimate Trojan” offer a guarantee that it will be completely undetectable. Whether that guarantee is true is yet to be seen.





thats quite a high tech trojan i must say… i hope AV vendors can catch this one soon!
Information Security and Strategy Carnival – Issue #4
Just take a Lenovo into a tempest lab and wet yourself… The Ultimate Trojan is just as effective as the Greeks Wooden Horse instead of the Horse the Chinese are using cheap PC’s for businesses and consumers hoping they will be used by high profile users and connected to the net externally usually via the users home net work. Another thing is the security built in, it’s a two edged sword and the Chinese could at any time disable every Lenovo or Chinese made hardware conponent simplly releasing a command…. Watch and see something is coming 00:01hrs 21/12/2012 We aren’t sure what it is but it can not be anything good..