
Game Halo 2 in one day recorded sales of U.S. $ 125 million, beating Spiderman income is within 3 days to produce U.S. $ 115 million. From events in the year 2007, of course we all agree that the game industry can not be playing games again. Look at popular games such as Ragnarok, Warcraft, and the long-awaited Starcraft II’s drugged players seemed to be in his own world.
Mass multiplayer online games like World of Warcraft to penetrate the number of active online players at 10 million worldwide in January 2008, more than the entire population of Singapore.
In addition to attracting many players online that if you want to play must pay a subscription fee and spend a lot of time to improve the character he played the character abilities. Apparently it also invited the parties are not liable to capture character owned by World of Warcraft players to create a virus that functions as a trojan and keylogger.
And the bad news, in addition to stealing the data World of Warcraft, the virus has also spread the action to steal account data Yahoo and Google.
Thieves Information
In general, several variants of the trojan OnlineGames only used to steal account information online gamers will then be sent to an encrypted URL links that they will be targeted by the trojan.
For this W32/OnlineGames.JGEV not only online gaming account information, but some other accounts also stolen. In some variants of the trojan before only after a few online games like World of Warcraft (WOW), Perfect World and Cabal Online. This Trojan also find some accounts recorded in the script they will be the trojan file: Worldofwarcraft.com, Woweurope.com, Battle.net, Yahoo.com, and Google.com
Trojan uses keylogging activities that aim at first to get the username and passwords from online games. In development trojan also trying to find the information acquired on the basis of the script that contains the following strings: file, complete, accountName, text, and others.
Surely it would be dangerous if it is successfully obtained an important data such as usernames and passwords on bank accounts, credit cards and others were stolen and sent to the trojan creator URL link tsb.
How to Spread
Many ways that attempted to trick the victim to run the trojan. Some things are done as follows:
-. Posting in public forums, and provides links to downloadable files.
-. Link to download the flash player, when downloaded and run the trojan.
-. Post a link on gaming forums as a FAQ of the game they will be, or to ask questions about things in games that included a link, so that makes the link of the latest patches on a particular game.
-. Send e-mail that included a link or a particular attachment.
-. File sharing on the network, usually the shape of the executable / application.
File Viruses
Trojan files are downloaded and run created using C + +. After the attachment link and successfully run by the user (either intentionally or not), it will create several files on the system as follows:
-. C: \ Program Files \ Manson (create the folder ‘Manson’)
-. C: \ Program Files \ Manson \ liser.exe (60 kb)
-. C: \ Program Files \ Manson \ liser.dll (24 kb)