Malware
PresFox
The family is adding a fake root certificate authority, sets a proxy.pac-url for local browsers and redirects infected users to fake banking applications (currently targeting Poland).
PresFox is a PowerShell malware family.
Background
This family installs a bogus root certificate authority, configures a proxy.pac-url for the local browsers, and steers infected users toward fraudulent banking applications (Poland being the current target). Available information suggests the PowerShell script is delivered by an exploit kit.
Source: Malpedia (Fraunhofer FKIE).