Malware uses copyright threats to blackmail victims

    Date19 Apr 2010
    CategoryHacks/Cracks
    4319
    Posted ByAnthony Pell
    Security experts at Trend Micro have identified a new Trojan spreading from Japan which threatens to post the internet history of infected users. The Kenzero Trojan masquerades as a download for an adult Hentai computer game, primarily shared on the popular Japanese Winny peer-to-peer network.

    Once downloaded, the malware opens a registration screen for the game demanding personal information while scanning the computer's user account, domain and computer name, operating system version, clipboard content, file use history and Internet Explorer favourites.

    The malware then publishes all the data on a public web site and sends the victim an email from a shell company called Romancing Inc, which owns the domain publishing the personal data.

    The email accuses the user of copyright theft, and threatens a court case if damages are not forthcoming.

    "I would go so far as to say that the Japanese attack linking 'name and shame', pornography and threats of legal action is the first of its kind," Rik Ferguson, senior security advisor at Trend Micro, told V3.co.uk.

    You are not authorised to post comments.

    LinuxSecurity Poll

    Do you reuse passwords across multiple accounts?

    No answer selected. Please try again.
    Please select either existing option or enter your own, however not both.
    Please select minimum 0 answer(s) and maximum 2 answer(s).
    /component/communitypolls/?task=poll.vote
    13
    radio
    [{"id":"55","title":"Yes","votes":"4","type":"x","order":"1","pct":80,"resources":[]},{"id":"56","title":"No","votes":"1","type":"x","order":"2","pct":20,"resources":[]}]["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"]["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"]350
    bottom200

    We use cookies to provide and improve our services. By using our site, you consent to our Cookie Policy.