GhostDNS Malware Compromised over 100,000 Routers in Brazil

IT Security researchers have unmasked a new malware, GhostDNS, which has hacked over 100,000 residence routers & changed their DNS settings. This widespread DNS Trojan campaign aims at hacking the web-pages & stealing login credentials of the users.



The newly discovered GhostDNS malware seems to be related to its scandalous predecessor, DNS Changer Malware that could turn the inconspicuous network router into a vital tool for hackers. The malware would tamper the router & its DNS settings. Following this successful vandalizing, malware would redirect the users to the malicious versions of the legitimate banking websites or other legit pages. This paves a way for the bad guys to steal user’s account credentials, PIN numbers & passwords!

According to the report by CyberSecurity firm, Qihoo Netlab 360, GhostDNS is starting to grade up its efforts to gather sensitive information with a whole new bunch of scanners.



In this event, the attackers try to curb the potential routers either by guessing the web admin passwords or bypass the authentication through a susceptible DNS configuration CGI script. GhostDNS Botnet scans the IP addresses of the routers, gains illicit access to the router settings & changes the default DNS settings with the one dominated by the hackers.

Read Full Article

Comments

Popular posts from this blog

How to remove ZUpdater.exe Trojan from your system?

How to Remove Search.newtabtvsearch.com or NewTabTV Redirect?

Myquickconverter Browser Redirect Removal Instructions