Trend Micro has analyzed an interesting backdoor malware

Jun 6, 2013 17:01 GMT  ·  By

Trend Micro has spotted a new spam campaign aimed at German users. The most interesting part about this campaign is the malware it’s designed to distribute.

According to researchers, recipients of the malicious emails are informed that they must immediately pay a debt. They’re instructed to open the attached file to learn more details.

Once executed, the attached file unleashes a backdoor (BKDR_MATSNU.MCB) that’s capable of performing various malicious tasks.

Besides allowing its mastermind to collect information on the infected computer, BKDR_MATSNU.MCB can also wipe out the device’s Master Boot Record (MBR).

In addition, it also has some interesting ransomware capabilities. It can lock and unlock the computer’s screen. By locking the screen, the cybercriminal can demand the payment of a ransom from the victim.

Experts say that the individuals who control the backdoor can choose what they want to do – either lock the screen or wipe the MBR.

Trend Micro believes there might also be another variant of the threat that integrates the screen locking routine.