Malware in NH bank computers may affect hundreds of thousands

Share this article:

Malware discovered on computers used by New Hampshire-based St. Mary's Bank may have compromised more than 100,000 accounts.

How many victims? 115,775.

What type of personal information? Names, addresses, Social Security numbers, account information and transaction records.

What happened? The New Hampshire bank discovered malware on an employee computer workstation in May, and it was later discovered that 23 other workstation computers may have been affected beginning in February.

What was the response? St. Mary's alerted the 115,775 New Hampshire residents who may have been compromised. The facility is offering one year of credit monitoring and identity theft protection services through Experian to individuals who may have been affected, and is enhancing its information security measures. An official investigation is ongoing.

Details: Malware was discovered on an employee workstation on May 26. An unnamed computer security consulting firm was called in and determined the malware is designed to capture information as it appears on computer screens. The firm determined it may have been introduced to 23 more workstation computers beginning in February. The entire bank security system was analyzed and the malware was isolated and eliminated.

Quote: “We have received no reports of unusual activity in any of our member accounts related to this malware, but we recommend that you carefully review your account statements for any sign of unauthorized activity and report it to us immediately,” St. Mary's CEO Ronald Covey wrote in his letter to customers.

Source:, “St. Mary's Bank: Incident Notification,” July 12, 2013.

Share this article:
You must be a registered member of SC Magazine to post a comment.

Sign up to our newsletters



More in The Data Breach Blog

Malware on Breyer Horses website for about 18 months, payment card data ...

Malware installed on the computer server hosting the Breyer Horses website may have compromised personal information for people who made purchases between March 31, 2013 and Oct. 6.

Transcript website flaw exposed personal data on 98k users expose users' names, addresses and dates of birth, among other information, due to a site flaw that one user discovered.

Sourcebooks payment card breach impacts more than 5,000 customers

More than 5,000 customers had personal information stolen, but roughly 9,000 notification letters were sent out as a precautionary measure.