Alina POS

Aliases: alina_eagle, alina_spark, katrina

First seen
2012-01-01 00:00:00
Malware type
trojan
Family
Malware family
Profile updated
2026-07-07 14:43:41

Targeted industries: retail-and-hospitality

Context

Alina POS is a point-of-sale malware family primarily used to steal payment card data from infected systems. It operates by scraping memory for credit card information and transmitting it to remote servers controlled by attackers. Alina has been linked with attacks on businesses within the retail and hospitality sectors.

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Alina Pos (report)
  • Trend Micro — Operation Black Atlas Endangers In Store Card Payments And Smbs Worldwide Switches Between Blackpos And Other Tools (report)
  • blog.centurylink.com — Alina Point Of Sale Malware Still Lurking In Dns (report)
  • trustwave.com — Alina Following The Shadow Part 1 (report)
  • xylibox.com — Alina 34 Pos Malware (report)
  • trustwave.com — Alina Following The Shadow Part 2 (report)
  • Trend Micro — Two New Pos Malware Affecting Us Smbs (report)
  • trustwave.com — Alina Casting A Shadow On Pos (report)
  • trustwave.com — Alina Pos Malware Sparks Off A New Variant (report)

External references