Deconstructing a Pump-and-Dump Spam Trojan - r57shell

By eweek  |  Posted 2012-05-28 Print this article Print
Deconstructing a Pump-and-Dump Spam Trojan - r57shell

r57shell is a PHP script that is the handiwork of a Russian hacking group. It is uploaded to a vulnerable Web site and gives the hacker the ability to download and upload files, create backdoor listeners, send e-mail, bounce a connection to another s


SecureWorks researcher Joe Stewart reverse-engineers a SpamThru Trojan and finds evidence of a well-heeled spam operation attempting to manipulate penny stocks. These images show the scammers at work.


Submit a Comment

Loading Comments...
Manage your Newsletters: Login   Register My Newsletters

Thanks for your registration, follow us on our social networks to keep up-to-date
Rocket Fuel