Dev.SN
Dev.SN ♥ developers
https://dev.soylentnews.org/

Title    New Zeus Trojan Variant Using Steganography
Date    Friday February 21 2014, @02:30PM
Author    Dopefish
Topic   
from the zeus-favored-the-greeks dept.
https://dev.soylentnews.org/article.pl?sid=14/02/21/0553208

Keldrin writes:

"Zeus is a trojan designed to steal banking credentials, and has been declared one of the most successful pieces of malware currently seen in the wild. A new variant is making detection far more difficult for anti-virus companies by hiding configuration settings inside pictures. At the moment, the malware simply encodes the configuration with Base64, passes them through XOR and RC4, then attaches them to the end of an image file. This makes for an 'infected' file that is much larger than the original. There is speculation that future releases of the malware will be able to detect minuscule changes to the colors of individual pixels, making the affected files much harder to detect."

Links

  1. "trojan designed to steal banking credentials" - http://securityaffairs.co/wordpress/22334/malware/zeus-banking-malware-nestles-crucial-file-photo.html
  2. "most successful pieces of malware" - http://www.aba.com/Tools/Offers/Documents/Wontok-HowtoProtectYourCustomers.pdf

© Copyright 2024 - Soylent News, All Rights Reserved

printed from Dev.SN, New Zeus Trojan Variant Using Steganography on 2024-05-13 21:24:55