Tag Archives: Malware

Last of the Gozi 3 gets 36 months for malware ops scheme • The Register

The last of the three men said to be responsible for infecting Windows computers with the banking trojan Gozi has been sentenced to three years.

Mihai Ionut Paunescu, 37, was said to have supplied the bulletproof hosting that is so vital for the efficient running of malware ops, allowing his co-conspirators to distribute the Gozi malware that stole confidential financial information from millions of computers, among them some Windows boxes running at NASA.

The Romanian national, whom Feds say was also known as “Virus,” was sentenced [PDF] to three years in prison on Monday. He was extradited last year in Colombia, where he had apparently been living after being released on bail following an arrest in Romania in 2012.


Source link

Enterprise-Attacking Malware Toolkit Analyzing 70 Billion DNS

The ‘Decoy Dog’ malware toolkit, aimed at enterprises, was uncovered recently by the security analysts at Infoblox by analyzing 70 billion DNS records and traffic that differs from typical online behavior.

Decoy Dog was discovered in early April 2023, and by using domain aging and DNS query dribbling tactics, the Decoy Dog malware assists threat actors in avoiding traditional detection methods. 

This strategy enables them to build a positive reputation with security vendors before transitioning to supporting cybercrime activities.

Decoy Dog has an exceptionally rare and distinct DNS fingerprint compared to the 370 million active domains on the internet, facilitating its identification and tracking.

Technical Analysis

Numerous C2 domains related to the operation were identified…


Source link

Monarx and Hostinger announce partnership to prevent malware

Monarx, the #1 most effective security solution for linux web hosting, is thrilled to announce its partnership with Hostinger, a global hosting company that hosts millions of websites, online shops, and domains.

Monarx is now securing shared plans offered by Hostinger 24×7. With easy deployment, Hostinger quickly protects servers with a single command line & provides instant malware protection for their end users. Shared domain owners enjoy “on by default” protection with zero/no configuration or installation.

In addition to providing unmatched malware protection, Monarx dug deeper into Hostinger’s needs and goals to innovate and build additional features and functionality to add to the already powerful arsenal of Monarx protection products.

Features like:

  • Fine-tuning and…

Source link

GoDaddy Hacked! Malware Deployed On GoDaddy Servers, Source Code Stolen By Hackers – Trak.in

In a multi-year intrusion, Web hosting platform GoDaddy has revealed that cyber-criminals gained access to its systems, installed malware on its network and stolen parts of its source code.

GoDaddy Hacked! Malware Deployed On GoDaddy Servers, Source Code Stolen By Hackers

In order to further investigate the issue, the company said that it is working with multiple law enforcement agencies around the world, in addition to forensics experts.

GoDaddy Targeted by Cyber Criminals

The company said in a statement that “We have evidence, and law enforcement has confirmed, that this incident was carried out by a sophisticated and organised group targeting hosting services like GoDaddy”.

The hackers’ goal was to infect websites and servers with malware for phishing campaigns, malware distribution and other malicious activities. GoDaddy revealed in a US Securities and…


Source link

Malware caused the recent website redirects issue, says GoDaddy

Popular web domain name service provider GoDaddy has confirmed that intermittent redirects were happening on seemingly random websites hosted on its cPanel shared hosting servers. 

After receiving customer complaints in December 2022 about their websites being intermittently redirected, GoDaddy investigated and found that an unauthorized third party had gained access to servers in its cPanel shared hosting environment and installed malware which led to the intermittent redirection of customer websites. The situation has been remediated and security measures implemented to prevent future infections. 

In a regulatory filing to U.S. Securities and Exchange Commission (SEC), popular web domain name service provider GoDaddy has confirmed that the company suffered a multi-year security…


Source link