Next-Generation Banking Malware Emerges After Zeus
Batblue writes "The rumored combination of two pieces of advanced online banking malware appears to be fully underway after several months of speculation. What appears to be a beta version of a piece of malware that has bits of both Zeus and SpyEye is now in circulation, albeit among just a few people, said Aviv Raff, CTO and cofounder of Seculert. Seculert has published screen shots of the new malware, which has two versions of a control panel used for managing infected computers. One of those control panels resembles one in Zeus, and the other resembles that in SpyEye. Both of the control panels are connected to the same back-end command-and-control server, he said."
Oh no! They're gonna get at the wad of money buried in the back yard! It may only earn the interest of worms, but at least its not funding wall street
Is Seculert prominently secular or something?
Kreb's writeup is pretty good as well, not that anyone reads tfa.
http://krebsonsecurity.com/2011/02/revisiting-the-spyeyezeus-merger/?utm_source=feedburner&utm_medium=feed&utm_campaign=Feed%3A+KrebsOnSecurity+(Krebs+on+Security)
just not install the software? After having all the fuss of refining Vista, why does Microsoft even allow malware to be installed on Windows 7 in the first place?
that you can rob a bank without having to kill or threaten anyone. Damn! I could retire tomorrow... Fuck the banks. I'm interested to see how this all plays out in the long term
best of luck to our (former) 'clients' in cairo
almost nothing else of value can happen until the scared/hungry/sick babies (all of them) are cared for appropriately. damned pyramids. see you there?
Thought this was worth including in /.
"Question (and not a rhetorical one): Do you think that if the US Congress issued a Letter of Marque and Reprisal to a licensed and bonded cyber privateer, and tasked that privateer to loot the bad guys, that the bad guys would think twice before plying their trade? In other words, is there a deterrent value?"
It is unwise to ascribe motive
I think it should be expected that there will always be something better, more efficient, and equally if not more spooky than the malware that we know about. The unknown stuff is the malware you should be worried about.
I see, it's either computer malware, Internet malware or now banking malware. How much PR effort must have gone into inserting that particular viral marketing meme into the blogosphere ..
I'm starting to think I should try modifying an Ubuntu live DVD so it's preconfigured to ignore HDD and block out everything but my bank. I'd still have to save files to USB though.
Anyone have experience with Rapport? Is it some lightweight thing you just run when you want to access internet banking or is it some nuisance running all the time?
You can install a full working system to a USB device using the Ubuntu Live USB creator. You can configure it so save your configuration to a separate partition and make it readonly using a physical read-write switch. Your session runs from memory and so is flushed at each reboot. There are various desktop environment available, one of the lightest is Lubuntu. Any business out there doing online Banking should produce their own customized Live CD and hand them out to their employees, there are various systems out there that can be customized such as the Knoppix distro ..
They are immune from fees and all that other banking stuff!
Congress can't do that, because it violates due process. We have to give "the bad guys" a trial. They are presumed innocent, until proven guilty.
Otherwise, the privateers just attack whoever they want, and falsely claim that their victims were "the bad guys" in the letter of marquee.
the Changeling....
http://en.wikipedia.org/wiki/The_Changeling_(Star_Trek:_The_Original_Series)
“Well, obviously we have malware in Lincoln Park. He's climbing in yo windows, he's snatchin yo money up..'