Trojan logs e-banking habits

By Dan Ilett, Special to ZDNet
12 November 2004 09:05 AM
Tags: e-banking, trojan, spyware, sopho, barclay
An antivirus company has detected a new Trojan attack that steals e-banking details when users log into legitimate banking sites.

Sophos is warning that the Banker-AJ Trojan is targeting online customers of banks such as Abbey, Barclays, Egg, HSBC, Lloyds TSB, Nationwide and NatWest.

The company said that once installed, the Trojan waits for users to visit their online banking Web sites, captures passwords and takes screenshots of the session. The information is then relayed to the hackers behind the ploy, who use the data to steal money.

"It's the next generation of phishing attacks," said Graham Cluley, senior technology consultant for Sophos. "These rely on people going to real legitimate sites. Once the Trojan determines that you've gone there, it starts taking keystroke logs and snaps shots of machines and sends it back to hackers."

But Barclays Bank said it had seen the technique before. A spokeswoman for the company said: "This type of Trojan is something [we] have been aware of for some time. We are working with industry to identify the next steps to help combat fraud and are interested in educating customers."

Sophos also said it had seen a similar Trojan (Tofger) a few months ago, but the technique had mainly been used in Brazil.

"We did see another one a few months ago," added Cluley. "Some of the Brazilian ones just wait for the user to look at a Web site with the word 'bank' in, but this one specifically targets many well known UK banks, and that makes it notable."

Advertisement

Talkback 1 comments

    Hello... this is not new - has ...Anonymous -- 12/11/04

    Hello... this is not new - has been around since trojans evolved... get up with the times, you are supposed to writing about innovative technology

Latest Videos

Sponsored content

Power Centre - Content from our premier sponsors

Blogs

  • Suzanne Tindal Sick of broken tender sites
    Some of the state governments desperately need to invest in more user-friendly tender sites so that looking for information on government tenders doesn't have to be a game of blind man's bluff.
  • Array Cyberwar: What is it good for?
    In this week's episode, Cyberwar. What is Australia's place in the world of digital warfare? What are the implications for the NBN?
  • Array Is wholesale-only backhaul just a pipedream?
    The potential acquisition of Pipe Networks by SP Telemedia has raised the question about whether vertically integrated backhaul providers will mean higher wholesale prices for ISP customers.
  • More blogs »

Tags

Back to top

Featured