Gauss - new nation state sponsored banking Trojan

Discussion in 'malware problems & news' started by tomazyk, Aug 9, 2012.

Thread Status:
Not open for further replies.
  1. tomazyk

    tomazyk Guest

    More here: http://www.securelist.com/en/blog/2...state_cyber_surveillance_meets_banking_Trojan

    EDIT: and here is detailed analysis: http://www.securelist.com/en/analysis/204792238/Gauss_Abnormal_Distribution
     
    Last edited by a moderator: Aug 9, 2012
  2. siljaline

    siljaline Registered Member

    Joined:
    Jun 29, 2003
    Posts:
    6,618
    See also: https://www.wilderssecurity.com/showthread.php?t=325011

    Flame and Stuxnet Cousin Targets Lebanese Bank Customers, Carries Mysterious Payload.
    Calls to curb cyber espionage after state-sponsored attack targets Lebanon
     
  3. Baserk

    Baserk Registered Member

    Joined:
    Apr 14, 2008
    Posts:
    1,321
    Location:
    AmstelodamUM
    According to Kaspersky;
    'Based on our analysis and the timestamps from the collected malware modules, we believe the Gauss operation started sometime around August-September 2011. ...
    It’s important to mention that Gauss infects USB sticks with a data stealing component that takes advantage of the same .LNK CVE-2010-2568 vulnerability exploited by Stuxnet and Flame. ...
    It should be noted that the vast majority of Gauss victims run Windows 7, which should be prone to the .LNK exploit used by Stuxnet.
    ' link

    CVE-2010-2568 was fixed in 2010, no? link
    Why would Win 7 users be prone to this component of Gauss. All non-updated Win7 versions?
    'Prone' means 'be inclined to' as in 'vulnerable', right?. o_O
     
  4. JRViejo

    JRViejo Super Moderator

    Joined:
    Jul 9, 2008
    Posts:
    97,865
    Location:
    U.S.A.
    Gauss Espionage Malware: 7 Key Facts by Mathew J. Schwartz.​

     
  5. Dermot7

    Dermot7 Registered Member

    Joined:
    Dec 20, 2009
    Posts:
    3,430
    Location:
    Surrey, England.
    https://www.computerworld.com/s/art...push_free_Gauss_detection_tools?taxonomyId=17
     
  6. JRViejo

    JRViejo Super Moderator

    Joined:
    Jul 9, 2008
    Posts:
    97,865
    Location:
    U.S.A.
     
  7. JRViejo

    JRViejo Super Moderator

    Joined:
    Jul 9, 2008
    Posts:
    97,865
    Location:
    U.S.A.
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.