Monday, April 7, 2014

Zeus malware variant - Uses vaild digital signature (claims Comodo)



According to the article:- 

What is alarming about this is that the file is digitally signed with a valid certificate, making it appear trustworthy at first glance. The digital certificate is issued to “isonet ag”.


There  are three components to an attack launched by Zeus:
  1. The Downloader: Delivered to the user system by an exploit or an attachment in a phishing email. It will download the rootkit and malware component of the attack.
  2. The Malware: In this case it is a data stealer, the program that will steal valuable user data, login credentials, credit card info, etc. that the user keys into a web form.
  3. A Rootkit: A rootkit hides the installed malware component, protecting it from detection and removal.



The link below has more information:-

No comments:

Post a Comment