Home > ParetoLogic Blogs > Malware Diaries > Porn Fraud Tool
Reply
 
Thread Tools Display Modes
  #1  
Old 07-10-2009, 02:18 AM
Michael Michael is offline
Administrator
Join Date: May 2007
Posts: 313
Default Porn Fraud Tool

Our Honeypot caught this piece of malware that presents itself as some sort of poorly written app.

A few buttons here and there... My guess is that this app should be hidden, and that it would simulate user clicks, hence generating money for the scammers... Well, my PC froze on it, so I was able to capture it.

It strongly reminds me of the old Porn Trojan.

porn

After a hard reboot, I noticed that my Desktop's wallpaper had been changed:

spy

It creates several files set to run at startup:

files

Very soon after, it was porn galore on my machine. Better stay away from this!

The file is somewhat detected on Virus Total:

porn2

Jerome Segura

Malware ID: *d75eca38884f44926ff51f84b0033be6.zip
Reply With Quote
Reply

« Previous Thread | Next Thread »

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off

Forum Jump


Terms of Use