Alina POS
Aliases: alina_eagle, alina_spark, katrina
- First seen
- 2012-01-01 00:00:00
- Malware type
- trojan
- Family
- Malware family
- Profile updated
- 2026-07-07 14:43:41
Targeted industries: retail-and-hospitality
Context
Alina POS is a point-of-sale malware family primarily used to steal payment card data from infected systems. It operates by scraping memory for credit card information and transmitting it to remote servers controlled by attackers. Alina has been linked with attacks on businesses within the retail and hospitality sectors.
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Win.Alina Pos (report)
- Trend Micro — Operation Black Atlas Endangers In Store Card Payments And Smbs Worldwide Switches Between Blackpos And Other Tools (report)
- blog.centurylink.com — Alina Point Of Sale Malware Still Lurking In Dns (report)
- trustwave.com — Alina Following The Shadow Part 1 (report)
- xylibox.com — Alina 34 Pos Malware (report)
- trustwave.com — Alina Following The Shadow Part 2 (report)
- Trend Micro — Two New Pos Malware Affecting Us Smbs (report)
- trustwave.com — Alina Casting A Shadow On Pos (report)
- trustwave.com — Alina Pos Malware Sparks Off A New Variant (report)