NewPosThings is a point of sale (PoS) malware family that ASERT has been tracking for a few weeks. It operates similarly to other PoS malware by memory scraping processes looking for credit card track data and then exfiltrating the spoils to a command and control (C2) server. Based on compilation times, it has been in active development since at least October 20, 2013—with the latest timestamp being August 12, 2014. Since we haven’t come across any public details of this family, we’re releasing our malware analysis for posterity and to get ahead of the threat.
more here.............http://www.arbornetworks.com/asert/2014/09/lets-talk-about-newposthings/
more here.............http://www.arbornetworks.com/asert/2014/09/lets-talk-about-newposthings/