Source |
Fortinet |
Identifiant |
4509 |
Date de publication |
2016-07-21 08:12:32 (vue: 2016-07-21 08:12:32) |
Titre |
A Peek into BlackMoon\'s Sustained Attacks against South Korea |
Texte |
A few months ago, we talked about a malicious campaign that targets South Korean users in the form of malware known as BlackMoon. BlackMoon is a banking Trojan that installs a proxy auto-config file (PAC) on an infected system in order to redirect users’ browsers to phishing pages related to South Korean banks.Back then, we noticed an open directory in the C&C that revealed over 100,000 victims. Given this impact, we decided to dig further in order to understand better the scale of this attack. Mainly, we wanted to know if the statistics... |
Notes |
|
Envoyé |
Oui |
Condensat |
000 100 about against ago attack attacks auto back banking banks better blackmoon browsers c&c campaign config decided dig directory file form further given impact infected installs know known korea korean mainly malicious malware months noticed open order over pac pages peek phishing proxy redirect related revealed scale south statistics sustained system talked targets then trojan understand users users’ victims wanted |
Tags |
|
Stories |
|
Move |
|