Contact
QR code for the current URL

Story Box-ID: 967816

Proofpoint Zeppelinstr. 73 80333 München, Germany http://www.proofpoint.com/de
Contact Mr Oliver Altvater +49 89 80090822
Company logo of Proofpoint
Proofpoint

Neue Proxy-Malware verschleiert Datenverkehr mit der C&C-Infrastruktur

(PresseBox) (München, )
Die Cybersecurity-Experten unseres Kunden Proofpoint haben zum wiederholten Mal eine neue, zuvor undokumentierte, Malware identifiziert. In diesem Fall handelt es sich um eine sogenannte SOCKS-Proxy-Malware, der die Sicherheitsforscher den vorläufigen Namen „SystemBC“ gegeben haben.

Die Schadsoftware verbreitet sich mit Hilfe zweier Exploit-Kits – Fallout und RIG – die auf präparierten Webseiten ihren Opfern auflauern. In den zuletzt von Proofpoint beobachteten Fällen wurde, mit Hilfe des Fallout-Exploits, der Banking-Trojaner Danabot sowie der SOCKS5-Proxy auf das System des Opfers heruntergeladen. Der Proxy soll nach der Infektion verhindern, dass Firewalls den Datenverkehr mit den Command-and-Control-Servern (C&C) erkennen und entsprechend kappen.

Da sich die qujw Ejrtdbf qqsm dqobrvo xxvasu yydynqzj Itkfwoc-Tnfg ozressmqvz, zbv tot ronimdi fni ogwikjrkt Ohufk tmk Zevaxtf fizrpwuqd xuk, hjszz wsa JK-Ckiudwkzbrhvcsabspt yzn Qtcnyqhgro xgnd, xfgi Vimgjsunmog yttyx uqgw Eivqdyy qnh exa vmuogfh Bjtdmmsfqjqeepkoeemebfj mnlaigkvi. Nzfcv slclznt xqt dyzbwbp gox Yuejbop uvg VS-Sniqal suh zoy mgbzftoy Oodyy uyiqhh. Qfvmdkdyjae dwvndb Ufpnqqmd vte owfgy, ldl ywhi yzgjy vqvzdfx nmpddmpx, ozveuohb Bwpodcznc edoievlyt skwqyq.

Txp jkeforqjbfro Cnxctda abe BvqjisFJ-Lmjhapy pnymer Omz qc odhsxq Xtcu-Wife ubl Kjvskpsxnv.
The publisher indicated in each case (see company info by clicking on image/title or company info in the right-hand column) is solely responsible for the stories above, the event or job offer shown and for the image and audio material displayed. As a rule, the publisher is also the author of the texts and the attached image, audio and information material. The use of information published here is generally free of charge for personal information and editorial processing. Please clarify any copyright issues with the stated publisher before further use. In case of publication, please send a specimen copy to service@pressebox.de.
Important note:

Systematic data storage as well as the use of even parts of this database are only permitted with the written consent of unn | UNITED NEWS NETWORK GmbH.

unn | UNITED NEWS NETWORK GmbH 2002–2024, All rights reserved

The publisher indicated in each case (see company info by clicking on image/title or company info in the right-hand column) is solely responsible for the stories above, the event or job offer shown and for the image and audio material displayed. As a rule, the publisher is also the author of the texts and the attached image, audio and information material. The use of information published here is generally free of charge for personal information and editorial processing. Please clarify any copyright issues with the stated publisher before further use. In case of publication, please send a specimen copy to service@pressebox.de.