Skip to main content
Solved

A new Trojan ? INFOSTEALER.SHIFU anyone hear of it ?

  • November 26, 2015
  • 2 replies
  • 36 views

Recieved an e-mail from IGOYI warning of a new trojan - INFOSTEALER.SHIFU. Is this a real thing ?

Best answer by Ssherjj

Hello goggleye
 
Welcome to the Webroot Community,
 
From some research that I have found below:
 
Infostealer.Shifu is a Trojan horse that opens a back door and steals information from the compromised computer.
 
The Trojan then opens a back door on the compromised computer, allowing an attacker to perform the following actions:

  • Download and execute files
  • Take screenshots
  • Create directories
  • Log keystrokes
  • Collect operating system information
  • Collect information about installed security programs
  • Collect POP3 and FTP credentials
  • Collect Bitcoin and Litecoin wallet information
  • Collect confidential information entered into browsers such as login credentials for banks or other websites
 
But I an sure Webroot is on top of this bad boy!;)

2 replies

  • Author
  • Fresh Face
  • November 26, 2015
Recieved an e-mail from IYOGI about a new trojan. Any one have news on it ?

Ssherjj
Moderator
Forum|alt.badge.img+62
  • Moderator
  • Answer
  • November 26, 2015
Hello goggleye
 
Welcome to the Webroot Community,
 
From some research that I have found below:
 
Infostealer.Shifu is a Trojan horse that opens a back door and steals information from the compromised computer.
 
The Trojan then opens a back door on the compromised computer, allowing an attacker to perform the following actions:

  • Download and execute files
  • Take screenshots
  • Create directories
  • Log keystrokes
  • Collect operating system information
  • Collect information about installed security programs
  • Collect POP3 and FTP credentials
  • Collect Bitcoin and Litecoin wallet information
  • Collect confidential information entered into browsers such as login credentials for banks or other websites
 
But I an sure Webroot is on top of this bad boy!;)