New virus infects ATMs

The developer of anti-virus software company "Doctor Web" has reported the appearance of a new Trojan, affecting ATMs one of the largest manufacturers. The virus is able to intercept data Trojan.Skimer.18 bank cards, including account information and PIN-code. The findings Trojan sends attackers. Trojan.Skimer.18 malicious program is the first such virus aimed at ATMs spread in Russia.

Continued under the cut ...





The virus is a dynamic library that is run from the digital application, and then select a file to store information about the last transaction. After starting the operating system of an infected ATM malware awaits the user's authorization. Next Trojan.Skimer.18 reads and stores the file Track2 data card - its number, PIN-code, expiration date, service code. The virus is able to circumvent the encryption PIN-code, used by software developers to ensure the security of ATM transactions.

Control Trojan.Skimer.18 done using special master cards. If you get infected in such an ATM card, the display device, a dialog box through which the attackers run the Trojan. At the command of scams virus can display statistics on stolen information, delete files from the log, change the mode of the ATM or reload it.

Data stolen Trojan.Skimer.18, stored on the chip master card, and the information is in the process of compression. The specialists of "Doctor Web" note the similarity with the same virus Trojan.Skimer.18 malware from which concluded that the authorship belongs to the developer Trojans.

Source

Source:

Tags

See also

New and interesting