Deconstructing a Pump-and-Dump Spam Trojan - SpamThru Bots per Server Port

 
 
By eweek  |  Posted 2012-05-28 Email Print this article Print
 
 
 
 
 
 
 
 

SecureWorks researcher Joe Stewart reverse-engineers a SpamThru Trojan and finds evidence of a well-heeled spam operation attempting to manipulate penny stocks. These images show the scammers at work.

 
 
 

SpamThru bots are segmented into different server ports, determined by which variant of the Trojan is installed. The bots are further segmented into peer groups of no more than 512 bots, keeping the overhead involved in exchanging information about oth

Deconstructing a Pump-and-Dump Spam Trojan - SpamThru Bots per Server Port
 
 
 
 
 
 
 
 
 
 
 

Submit a Comment

Loading Comments...

 
Manage your Newsletters: Login   Register My Newsletters























 
 
 
 
 
 
 
 
 
Rocket Fuel