ZeroHour
Kaspersky Securelistpublished ()ingested @Securelist

LdPinch again spammed via ICQ

highMalwareimportance 42
Full article177 words · extracted from securelist.com · click to collapse

Incidents

Incidents

06 Mar 2006

minute read

Over the weekend, we intercepted Trojan-PSW.Win32.LdPinch.ahe – the latest variant of LdPinch.

This malicious program sends itself to everyone on the victim’s ICQ contact list. It sends a Russian message which says:

1

2

[translation]How totrick WebMoney!

Tofind out how,read the Help instructions!

The message includes a link to the malicious program file, which is called Help.chm.

Latest Webinars
Reports

Kaspersky researchers have discovered new Mirage Kitten attacks using previously undocumented malware families: NodeRabbit in Node.js and PollCat in JavaScript.

Our experts discovered a new CoolClient backdoor variant with a kernel-mode rootkit driver that hides malicious processes, files, and network connections from security tools and threat analysts.

Kaspersky experts break down a new Armored Likho campaign that poses as a fundraising efforts and delivers a new Still Toolkit aimed at stealing Telegram data and eavesdropping on victims.

Kaspersky researchers reveal previously undocumented malware attributed to Mirage Kitten (UNC1549, Smoke Sandstorm, Nimbus Manticore): NightLedger backdoor, ArcBridge, and BridgeHead tunneling tools.

Text extracted automatically; images, tables and formatting may be missing. Original: https://securelist.com/ldpinch-again-spammed-via-icq/30144/