Deconstructing a Pump-and-Dump Spam Trojan - r57shell

 
 
By eweek  |  Posted 2012-05-28 Print this article Print
 
 
 
 
 
 
 
 
 
Previous
Deconstructing a Pump-and-Dump Spam Trojan - r57shell
Next

r57shell is a PHP script that is the handiwork of a Russian hacking group. It is uploaded to a vulnerable Web site and gives the hacker the ability to download and upload files, create backdoor listeners, send e-mail, bounce a connection to another s

 

SecureWorks researcher Joe Stewart reverse-engineers a SpamThru Trojan and finds evidence of a well-heeled spam operation attempting to manipulate penny stocks. These images show the scammers at work.

 
 
 
 
 
 
 
 
 
 
 

Submit a Comment

Loading Comments...
 
Manage your Newsletters: Login   Register My Newsletters























 
 
 
 
 
 
 
 
 
Thanks for your registration, follow us on our social networks to keep up-to-date
Rocket Fuel