Trojan compromises banking security

By

Security experts have found a Trojan worm that steals user-banking details.

The worm plants itself in PCs via pop-up ads when a user closes the window.


The programme, named PWSteal.refest, then waits for the user to enter banking details, records them and sends them to the worm author.

Anti-virus firm Symantec has advised to do take the following steps:

1. Disable System Restore (Windows Me/XP).
2. Update the virus definitions.
3. Close all Internet Explorer windows.
4. Run a full system scan and delete all the files detected as PWSteal.Refest.
5. Optional: delete the value that was added to the registry.

www.symantec.com

Got a news tip for our journalists? Share it with us anonymously here.
Copyright © SC Magazine, US edition
Tags:

Most Read Articles

First npm worm "Shai-Hulud" released in supply chain attack

First npm worm "Shai-Hulud" released in supply chain attack

"VoidProxy" PhishKit targets Google and Microsoft users

"VoidProxy" PhishKit targets Google and Microsoft users

Apple adds "mercenary spyware" protection to new A19 chip

Apple adds "mercenary spyware" protection to new A19 chip

Phishing attack nets enormous npm supply chain compromise

Phishing attack nets enormous npm supply chain compromise

Log In

  |  Forgot your password?