Malware Domain List

Malware Related => Tools of the trade / Internet News => Topic started by: SysAdMini on August 23, 2011, 07:15:32 pm

Title: Ramnit Evolution – From Worm to Financial Malware
Post by: SysAdMini on August 23, 2011, 07:15:32 pm
https://www.trusteer.com/blog/ramnit-evolution-%E2%80%93-worm-financial-malware

Quote
though Ramnit employs old generation malicious techniques, we kept it on our malware radar, and a few weeks ago we started seeing something interesting. Apparently, Ramnit morphed into a financial malware, or at least was used as a platform to commit financial fraud (we’re still investigating its modular architecture). Once installed Ramnit will continuously communicate with the Command and Control (C&C) server, reporting on its status and receiving configuration updates; inbound and outbound communication is over SSL (https).