Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Security > Hacking News

July 21st, 2008, 07:50 GMT · By George Craciun

New Trojan Guaranteed to Bypass Detection

SHARE:

Adjust text size:


Trojan for sale, guaranteed to run under the radar
Enlarge picture
The Trojan in question has been named Limbo 2, and according to the people who came up with it, the best 10 security software solutions on the market today are not capable of detecting it. Acquiring this malware will set you back about $1,300, but for that amount of money you will get a software product that is unique, customized to your personal requirements, and guaranteed to run under the radar of most security solutions.

"Each variant sold is built anew and has to be customized to incorporate the domain of where all the information is to be sent back to. These are then sold on to websites or botnets to infect individuals," says Prevx, the security company that discovered the threat.

What does the Trojan do? Once it manages to infect a system, it goes to work whenever it detects that the user has accessed an online banking service. Not only does it record the regular login info, it also adds spoofed information boxes which ask you to provide additional information in regard to your bank account. All the gathered security credentials are then sent to the person that bought Limbo 2, so that it can be used for whatever malicious purpose that person has in mind.

"This is one of the most dangerous Trojans out there at the moment. The strength of this piece of malware lies in its versatility, even if it is recognized up by an anti-virus company it can be changed so as to be invisible again within hours. There are likely to be so many variants out there that they will never all be detected, which is a scary thought as it is designed to steal bank details," says Jacques Erasmus, Director of Malware Research with Prevx.

According to Erasmus, this is a very lucrative piece of software, earning the designer of Limbo 2 a few thousand pounds every day. Since it has not yet been detected how the malware propagates, it is safe to assume that the source of infection is a malware spreading site.
FILED UNDER:
Trojan
phishing
Limbo
security

TELL US WHAT YOU THINK:

2,026 hits · 1 comment · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Softpedia Linux Weekly, Issue 3

How to Come Up with a Super Strong Password

Faulty Network Card Shuts Down Dublin Airport

Toshiba Laptop Users to Benefit from Symantec Security Software

MSN Manager Indicted for Fraud

READER COMMENTS:


Comment #1 by: Mr. Question on 02 Sep 2008, 13:31 UTC reply to this comment

Why dont they just do a silent detection on the file, I.e Detect a certain script in the malware surely that would work...

Copyright © 2001-2012 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM