Gozi V3: tracked by their own stealth

Credit to Author: sophoslabsbehavioural| Date: Tue, 24 Dec 2019 09:00:32 +0000

Gozi, also known as Ursnif or ISFB, is a banking trojan which has been around for a long time and currently multiple variations of the trojan are circulating after its source code got leaked. Every variant that is distributed has interesting aspects, with Gozi version 3 the most eye-catching in the field of detection evasion. [&#8230;]<img src=”http://feeds.feedburner.com/~r/sophos/dgdY/~4/LaetYrage7Q” height=”1″ width=”1″ alt=””/>

Read more

Spelevo exploit kit debuts new social engineering trick

Credit to Author: Jérôme Segura| Date: Wed, 18 Dec 2019 16:00:00 +0000

In order to maximize infection rate, threat actors are now launching the Spelevo exploit kit with a decoy adult site, social engineering users into downloading a malicious video player.

Categories:

Tags:

(Read more…)

The post Spelevo exploit kit debuts new social engineering trick appeared first on Malwarebytes Labs.

Read more

Binary Options malvertising campaign drops ISFB banking Trojan

Credit to Author: Jérôme Segura| Date: Thu, 20 Apr 2017 15:00:55 +0000

We take a look at a widespread and yet stealthy malvertising campaign distributing the ISFB banking Trojan via decoy websites.

Categories:

Tags:

(Read more…)

The post Binary Options malvertising campaign drops ISFB banking Trojan appeared first on Malwarebytes Labs.

Read more