Close
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
Read Down
Sign in
Close
Welcome!Log into your account
Forgot your password?
Read Down
Password recovery
Recover your password
Close
Search
Logo
Subscribe
Logo
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
More
    Subscribe
    Home Cloud
    • Cloud
    • Cybersecurity
    • Networking

    Zeus Trojan Merger with SpyEye, Other Banking Malware Worry Researchers

    Written by

    Fahmida Y. Rashid
    Published November 29, 2010
    Share
    Facebook
    Twitter
    Linkedin

      eWEEK content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More.

      The developers behind the Zeus and SpyEye Trojans have joined forces to create one major botnet, with sophisticated capabilities to attack user bank accounts, according to security researchers.

      Malware authors aren’t sitting still as law enforcement officials arrest cyber-gangs stealing millions of dollars from compromised bank accounts. There is a lot of financial incentive to target bank accounts, said Randy Abrams, director of technical education at ESET, more so than gaming Trojans, which are actually the most common type of malware that researchers see.

      “The heat is getting strong on Zeus,” said Abrams, referring to the recent streak of arrests shutting down Zeus botnets worldwide. “Zeus and SpyEye have definitely merged,” he said.

      However, the merger “is not the big story,” said Abrams, pointing out there are other Zeus variants that are as dangerous, such as Feodo, which has the ability to deliver a payload that attacks over a dozen banking institutions.

      Security researchers are alarmed about URLZone, which can transfer money out of an account and manipulates the browser to keep showing the user the original balance. A Trojan called Ares is also making the rounds, with the developer claiming “it has the same banking capabilities as Zeus and SpyEye,” according to German anti-malware company G-Data Software.

      According to novirusthanks.org, SpyEye works in stealth mode, is invisible from the task manager and other user-mode applications, hides the files from the regular explorer searches, and also hides its registry keys. It can grab data entered in a Web form and automates getting money from stolen credit cards.

      There are a lot of “insiders cooperating, and lots of mind power,” said Abrams. It is difficult to speculate whether the merger is a joint collaboration or if it was a political move where the Zeus author was forced to merge because Zeus was under attack, he said.

      Banking malware relies on stealth and sophisticated techniques to compromise users. The gaming Trojans, in contrast, steal passwords using simple social engineering methods, he said.

      However, there is nothing remarkably new in the merged variant, as it employs tactics such as social engineering, the man-in-the-middle-attack or combining mobile malware with PC malware, said Abrams. The man-in-the-middle attack refers to malware authors getting around SSL encryption by infecting the user’s PC. Despite strong encryption, if it’s the user PC that is infected, then whatever the user sees, the criminals can also see, he said. The combined attack can take the form of intercepting SMS messages from banks on the mobile phone.

      The older, original Zeus Trojan is not going away, Abrams said. Botnets running the older Zeus code will continue their attacks alongside the new Zeus/SpyEye variant. While it was possible that the Zeus Trojan would be updated with new capabilities, “like any software company, they will focus on the new version,” he said.

      There has to be “more rigorous” security around online banking and a focus on regulations worldwide, not just the United States, said Abrams. But as long as small businesses and users bear the brunt of these attacks, banks are not likely to make the significant security investment required, he said.

      Abrams suggested that users dedicate a separate PC for online banking, one that is never used for e-mail or surfing the Web. The operating system and browser should be regularly patched and kept up to date to foil any remote attacks looking for open vulnerabilities as well as running a firewall, he said.

      Many users are planning to upgrade to brand-new computers during the holiday season, so instead of throwing away the old computers, users should think about turning them into dedicated banking PCs, he said. “Older computers, Pentium 2 machines are enough for banking, as long as they can run an operating system and a supported browser,” said Abrams.

      A Linux bootable CD would be the most secure, but many banking Websites rely heavily on Active X and won’t work properly, he said.

      Fahmida Y. Rashid
      Fahmida Y. Rashid

      Get the Free Newsletter!

      Subscribe to Daily Tech Insider for top news, trends & analysis

      Get the Free Newsletter!

      Subscribe to Daily Tech Insider for top news, trends & analysis

      MOST POPULAR ARTICLES

      Artificial Intelligence

      9 Best AI 3D Generators You Need...

      Sam Rinko - June 25, 2024 0
      AI 3D Generators are powerful tools for many different industries. Discover the best AI 3D Generators, and learn which is best for your specific use case.
      Read more
      Cloud

      RingCentral Expands Its Collaboration Platform

      Zeus Kerravala - November 22, 2023 0
      RingCentral adds AI-enabled contact center and hybrid event products to its suite of collaboration services.
      Read more
      Artificial Intelligence

      8 Best AI Data Analytics Software &...

      Aminu Abdullahi - January 18, 2024 0
      Learn the top AI data analytics software to use. Compare AI data analytics solutions & features to make the best choice for your business.
      Read more
      Latest News

      Zeus Kerravala on Networking: Multicloud, 5G, and...

      James Maguire - December 16, 2022 0
      I spoke with Zeus Kerravala, industry analyst at ZK Research, about the rapid changes in enterprise networking, as tech advances and digital transformation prompt...
      Read more
      Video

      Datadog President Amit Agarwal on Trends in...

      James Maguire - November 11, 2022 0
      I spoke with Amit Agarwal, President of Datadog, about infrastructure observability, from current trends to key challenges to the future of this rapidly growing...
      Read more
      Logo

      eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site’s focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

      Facebook
      Linkedin
      RSS
      Twitter
      Youtube

      Advertisers

      Advertise with TechnologyAdvice on eWeek and our other IT-focused platforms.

      Advertise with Us

      Menu

      • About eWeek
      • Subscribe to our Newsletter
      • Latest News

      Our Brands

      • Privacy Policy
      • Terms
      • About
      • Contact
      • Advertise
      • Sitemap
      • California – Do Not Sell My Information

      Property of TechnologyAdvice.
      © 2024 TechnologyAdvice. All Rights Reserved

      Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.

      ×