New ZBOT Variants Targeting European Banks

Today, Trend Micro threat researchers ran across a new ZBOT variant mainly targeting four European countries’ banking systems in Italy, England, Germany, and France. Trend Micro detects this variant as TROJ_ZBOT.BYP. It targets major consumer European Banks and financial institutions with high-profile clientele. The targeted companies include the major UniCredit Group Subsidiary Bank of [...]

New Scareware Tactic Lures in More FAKEAV Buyers

TrendLabs recently received a new FAKEAV sample, which we now detect as TROJ_FAKEAV.BLW. Like previous variants, it poses as a legitimate antivirus application that displays false detections, disables firewall and security center functions, and produces pop-up warnings to force affected users to purchase rogue antivirus software. Unlike its predecessors, however, this sample uses the [...]

Spam with “Pictures” Used to Spread ZBOT

Advanced threats researcher Ivan Macalintal spotted a fresh wave of spammed messages that were used to spread another ZBOT variant of the infamous ZeuS botnet. These messages warned users that a “jerk” posted photos of them and contained a link to the said images.

Note that the spammed messages appear to be from innocent [...]