Evolving Zeus malware used in targeted email attacks

Status
Not open for further replies.

Ink

Administrator
Thread author
Verified
Staff Member
Well-known
Jan 8, 2011
22,361
New strains of the malevolent Zeus malware have been discovered using the Windows 'PIF' file extension to steal information from compromised computer systems.

The Websense ThreatSeeker Intelligence Cloud has been tracking the campaign, which appears in short bursts, for several months. Specifically, these strains of the banking Trojan have been seen to "persistently evolve and adapt their methods to implement information stealing procedures," and are believed to be a direct evolution of a previous variant called 'Zberp.'

The Zberp Trojan, believed to have been assembled from the source code of Zeus and Carberp, allows cyber-criminals to lift information from compromised computers including names, IP, data submitted in HTTP forms and FTP/POP accounts. As well as being able to take screenshots and send them to Command and Control (C&C) centers, the variant also uses evasion techniques inherited from both the Zeus and Carberp Trojans.​

Find out more: WebSense Blog
 
Status
Not open for further replies.

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top