New Malware Targets Firefox, Steals Bank Passwords

CYBERSPACE — Online security researchers have discovered a new piece of malware that targets Firefox users and collects bank passwords.

Firefox users can get infected with the malware by either getting tricked into downloading it, or even passively, via a so-called “drive-by” download.

The security firm BitDefender identified the malware, which registers itself under a package of plugins called “Greasemonkey” on PCs. When installed, the malware lies dormant in the application’s add-ons folder under the file name “Trojan.PWS.ChromeInject.A.”

When activated, the malware uses Javascript to collect password information from several banks, including Barclays, Wachovia, Bank of America and PayPal. It then sends the information to a server in Russia.

Microsoft's Internet Explorer continues to command the vast majority of the market, 20 percent of all web surfers now turn to Firefox, according to market researchers at Net Applications, an online tracking firm.

That’s good news for Mozilla but bad news for Firefox surfers who haven’t had to contend with as many viruses and malware as Internet Explorer users.

BitDefender recommended that users only download signed, verified software to their systems. On a commercial basis, the company also offers an array of products to detect and fight viruses and malware.

Related:  

Copyright © 2026 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

2027 XBIZ Exec Awards Pre-Nominations Period Opens

XBIZ is pleased to announce that the pre-nomination period for the 2027 XBIZ Exec Awards, the adult industry’s preeminent career honors, begins Wednesday and runs through Oct. 14.

Takedown Piracy Reports Infiltration, Monitoring of 'Mega.nz' Pirated Content

Takedown Piracy has reported that the organization has successfully infiltrated Mega.nz folders and identified and removed thousands of instances of stolen content.

Pornhub Unblocks Australia Users on iOS Devices, Citing Apple AV Effectiveness

Pornhub parent company Aylo on Tuesday announced that users in Australia will once again be able to access the popular site if they are using Apple devices and have confirmed their age through Apple’s Australian age-verification process.

California Governor Signs Bill Limiting CIPA Claims

Governor Gavin Newsom has signed into law a bill to narrow the scope of the California Invasion of Privacy Act (CIPA), to prevent abusive lawsuits targeting online businesses, including adult websites.

California Enacts Stricter UGC Rules for Adult Sites

Governor Gavin Newsom has signed into law a bill to impose tighter compliance standards for user-generated content (UGC) on adult websites accessible in California.

Minister: UK Aims to Begin Enforcing 'Choking' Ban Before Year's End

The U.K. will soon begin enforcement of a new law criminalizing depictions of “non-fatal strangulation” in adult content, according to a Ministry of Justice official.

XBIZ LA Conference Website Now Live, Registration Open

The event website for the XBIZ LA conference is now live, offering comprehensive information about the upcoming event, taking place Jan. 7-10 at the JW Marriott L.A. LIVE.

CrakRevenue Launches Mobile App for Real-Time Affiliate Alerts

CrakRevenue has launched Aff Companion, a mobile app that sends affiliates real-time notifications about clicks, conversions, and revenue.

Goddess Lilith Launches New Official Website Through PAYSITE

Goddess Lilith has rolled out her new official site, QueenGoddessLilith, through PAYSITE.

Pineapple Support to Host 'Reclaiming Intimacy' Support Group

Pineapple Support is hosting a free online support group for performers with trauma-impacted intimacy issues.

Show More