<html>
<head>
<meta http-equiv="content-type" content="text/html; charset=utf-8">
</head>
<body bgcolor="#FFFFFF" text="#000000">
<a class="moz-txt-link-freetext" href="http://www.trendmicro.com/vinfo/us/security/news/cyber-attacks/operation-tropic-trooper-infiltrates-secret-keepers">http://www.trendmicro.com/vinfo/us/security/news/cyber-attacks/operation-tropic-trooper-infiltrates-secret-keepers</a><br>
<br>
...<br>
"
<meta http-equiv="content-type" content="text/html; charset=utf-8">
The Trojan, TROJ_YAHOYAH, eventually downloads and decrypts a
malicious image or decoy file. The downloaded images appear harmless
and look similar to default wallpapers in Windows XP systems.
However, encrypted into them via simple steganography is
BKDR_YAHAMAM, a malware that steals data from the system, kills
processes and services, deletes files and directories, puts systems
to sleep, and performs other backdoor capabilities."<br>
<br>
...<br>
</body>
</html>