New Trojan winds statistics affiliate Loadmoney
The company "Doctor Web" reported the widespread Trojan designed to cheat indicators Loadmoney affiliate program and install on the infected computer of unwanted applications. Affiliate programs like Loadmoney, not uncommon - they allow administrators to different websites to make a file traffic. For example, the owner of the torrent tracker, connecting to a partner program to add to the web page special code: as a result of visitor while trying to download the torrent file accesses the remote server Loadmoney, created a special program loader, which is given to the user instead of the requested content . In turn, when you start the downloader downloads stated on the web page file, and if the user is not inadvertently reset the application window the appropriate boxes, sets it on a different computer software, such as a toolbar, a browser or other programs associated with the portal Mail.ru .
For each installation of such programs 'partner' is the corresponding reward. Trojan.LMclicker.1 supposedly was designed by one of the users of the affiliate program Loadmoney, also owns the site torrentgun.org (or have root access to it) in order to cheat their statistics and to obtain additional profit. Trojan simulates a user visiting the site torrentgun.org, the transition to a random section and download a random file. For greater plausibility Trojan appears to affiliate programs in different browsers. Obtained in this way, the application (which is detected by Dr.Web as Trojan.Loadmoney.1) runs on the user's computer, and its interface is automatically pressed "Start." As a result of this activity on the victim's computer downloads and installs various software associated with the famous Russian communication portal. The signature of the Trojan added to the virus database, so it does not present a hazard to users of anti-virus products Dr.Web.