Agent Trojan targets Asian gamers

Malware attempts to steal usernames and passwords

Written by Ian Williams

Online security firm ESET has warned of a new Trojan targeting online gamers in Asia.

Win32/PSW.Agent.NDP accounted for 5.73 per cent of the detections made by ESET's ThreatSense.Net tool, which reports detection statistics from millions of client computers around the world.

The program steals information from several sources, before sending the data back to a remote attacker.

"Agent.NDP is an interesting threat as it does not exploit any security vulnerability and does not contain its own mailing engine," said Pierre Marc Bureau, a researcher at ESET.

"Trojans are commonly used to perform identity theft and other malicious actions. Agent.NDP seems to target Chinese online gamers in an attempt to steal information such as usernames and passwords."

ESET explained that the Trojan is probably installed after being downloaded from a website, almost certainly under the guise of another application.

Agent.NDP then copies itself into the victim's temporary folder and writes a DLL in the same folder. It then injects the DLL code into explorer.exe to monitor system execution and find vulnerable information.

ESET's second highest ranking threat for October was INF/Autorun, accounting for 3.45 per cent of all detections.

INF/Autorun describes a variety of malware that uses the autorun.inf file which contains information to run programs automatically when removable media are inserted into a computer.

Tags:

Further reading

Surfers unwittingly put themselves at risk

Latest Get Safe Online awareness campaign highlights the dangers   More...

Korean game traders taken out by hackers

$900m virtual goods business driven offline by DoS attacks   More...

Data breaches are 'everyday incidents'

Companies know there is a problem, claims SanDisk   More...

UK government guilty of DPA breach

Website farce exposes details of 50,000 applicants   More...

Related articles

USB malware on the rise

Memory sticks identified as fast growing attack vector   More...

Obfuscated malware tops list in August

Threats include runtime packing, polymorphism and junk code injection   More...

World of Warcraft Trojan spreads from Asia

Password stealing malware hits US and Turkey   More...

Hackers 'seeding' legitimate websites

SQL injection attacks colonising big name sites   More...

Do you agree?

Advertisement

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Watch

24 Jul 2008

3.68 MBSpammer jailed, Esquire e-cover, and network passwords More...

23 Jul 2008

2.99 MBSmall time security, official 'spying' requests and a spammer jail break More...

22 Jul 2008

3.22 MBSat-nav crashes, open source security and female gamers More...

Poll

EUROPEAN E-COMMERCE

EUROPEAN E-COMMERCE

Are you happy making an online purchase from another European country?

Previous poll results

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Spotlight

Credit card transaction

Credit card fraud rampant in the UK

Attempted frauds go unreported and ignored, analysts claim   More...

Intel

Intel rolls out new embedded line-up

System-on-a-chip offerings promise footprint and power saving   More...

Advertisement

Network cables

Tech giants collaborate on wireless HD

Another attempt at cable-free transmission in the home   More...

iPhone fever fills AT&T coffers

US provider cashes in on Apple smartphone   More...

Advertisement