Zeus (malware)

Zeus
TypeTrojan Horse
OriginJuly 2007

Zeus is a Trojan horse malware package that runs on versions of Microsoft Windows. It is often used to steal banking information by man-in-the-browser keystroke logging and form grabbing.[1] Zeus is spread mainly through drive-by downloads and phishing schemes. First identified in July 2007 when it was used to steal information from the United States Department of Transportation,[2] it became more widespread in March 2009. In June 2009 security company Prevx discovered that Zeus had compromised over 74,000 FTP accounts on websites of such companies as the Bank of America, NASA, Monster.com, ABC, Oracle, Play.com, Cisco, Amazon, and BusinessWeek.[3] Similarly to Koobface, Zeus has also been used to trick victims of technical support scams into giving the scam artists money through pop-up messages that claim the user has a virus, when in reality they might have no viruses at all. The scammers may use programs such as Command prompt or Event viewer to make the user believe that their computer is infected.[4]

Detection

Zeus is very difficult to detect even with up-to-date antivirus and other security software as it hides itself using stealth techniques.[5] It is considered that this is the primary reason why the Zeus malware has become the largest botnet on the Internet: Damballa estimated that the malware infected 3.6 million PCs in the U.S. in 2009.[6] Security experts are advising that businesses continue to offer training to users to teach them to not to click on hostile or suspicious links in emails or Web sites, and to keep antivirus protection up to date. Antivirus software does not claim to reliably prevent infection; for example Symantec's Browser Protection says that it can prevent "some infection attempts".[7]

FBI crackdown

FBI: The Zeus Fraud Scheme

In October 2010 the US FBI announced that hackers in Eastern Europe had managed to infect computers around the world using Zeus.[8] The virus was distributed in an e-mail, and when targeted individuals at businesses and municipalities opened the e-mail, the trojan software installed itself on the victimized computer, secretly capturing passwords, account numbers, and other data used to log into online banking accounts.

The hackers then used this information to take over the victims’ bank accounts and make unauthorized transfers of thousands of dollars at a time, often routing the funds to other accounts controlled by a network of money mules, paid a commission. Many of the U.S. money mules were recruited from overseas. They created bank accounts using fake documents and false names. Once the money was in the accounts, the mules would either wire it back to their bosses in Eastern Europe, or withdraw it in cash and smuggle it out of the country.[9]

More than 100 people were arrested on charges of conspiracy to commit bank fraud and money laundering, over 90 in the US, and the others in the UK and Ukraine.[10] Members of the ring had stolen $70 million.

In 2013 Hamza Bendelladj, known as Bx1 online, was arrested in Thailand[11] and deported to Atlanta, Georgia, USA. Early reports said that he was the mastermind behind ZeuS. He was accused of operating SpyEye (a bot functionally similar to ZeuS) botnets, and suspected of also operating ZeuS botnets. He was charged with several counts of wire fraud and computer fraud and abuse.[12] Court papers allege that from 2009 to 2011 Bendelladj and others "developed, marketed, and sold various versions of the SpyEye virus and component parts on the Internet and allowed cybercriminals to customize their purchases to include tailor-made methods of obtaining victims’ personal and financial information". It was also alleged that Bendelladj advertised SpyEye on Internet forums devoted to cyber- and other crimes and operated Command and Control servers.[13] The charges in Georgia relate only to SpyEye, as a SpyEye botnet control server was based in Atlanta.

Possible retirement of creator

In late 2010, a number of Internet security vendors including McAfee and Internet Identity claimed that the creator of Zeus had said that he was retiring and had given the source code and rights to sell Zeus to his biggest competitor, the creator of the SpyEye trojan. However, those same experts warned the retirement was a ruse and expect the developer to return with new tricks.[14][15]

See also

References

  1. ^ Abrams, Lawrence. "CryptoLocker Ransomware Information Guide and FAQ". Bleeping Computer. Retrieved 25 October 2013.
  2. ^ Jim Finkle (17 July 2007). "Hackers steal U.S. government, corporate data from PCs". Reuters. Retrieved 17 November 2009.
  3. ^ Steve Ragan (29 June 2009). "ZBot data dump discovered with over 74,000 FTP credentials". The Tech Herald. Archived from the original on 25 November 2009. Retrieved 17 November 2009.
  4. ^ "How to Recognize a Fake Virus Warning". Retrieved 28 July 2016.
  5. ^ "ZeuS Banking Trojan Report". Dell SecuWorks. 10 March 2010. Retrieved 2 March 2016.
  6. ^ "The Hunt for the Financial Industry's Most-Wanted Hacker". Bloomberg. Bloomberg Business. 18 June 2015. Retrieved 2 March 2016.
  7. ^ "Trojan.Zbot". Symantec. Archived from the original on 30 January 2010. Retrieved 19 February 2010.
  8. ^ "Cyber Banking Fraud". The Federal Bureau of Investigation. Retrieved 2 March 2016.
  9. ^ FBI (1 October 2010). "CYBER BANKING FRAUD Global Partnerships Lead to Major Arrests". Archived from the original on 3 October 2010. Retrieved 2 October 2010.
  10. ^ BBC (1 October 2010). "More than 100 arrests, as FBI uncovers cyber crime ring". BBC News. Retrieved 2 October 2010.
  11. ^ Al Jazeera (21 September 2015). "Hamza Bendelladj: Is the Algerian hacker a hero?". AJE News. Retrieved 21 March 2016.
  12. ^ Zetter, Kim. "Alleged 'SpyEye' Botmaster Ends Up in America, Handcuffs, Kim Zetter, Wired, 3 May 2013". Wired. Wired.com. Retrieved 30 January 2014.
  13. ^ "Alleged "SpyEye" mastermind extradited to US, Lisa Vaas, 7 May 2013, Sophos nakedsecurity". Nakedsecurity.sophos.com. 7 May 2013. Retrieved 30 January 2014.
  14. ^ Diane Bartz (29 October 2010). "Top hacker "retires"; experts brace for his return". Reuters. Retrieved 16 December 2010.
  15. ^ Internet Identity (6 December 2010). "Growth in Social Networking, Mobile and Infrastructure Attacks Threaten Corporate Security in 2011". Yahoo! Finance. Retrieved 16 December 2010.

Read other articles:

Artikel ini memiliki beberapa masalah. Tolong bantu memperbaikinya atau diskusikan masalah-masalah ini di halaman pembicaraannya. (Pelajari bagaimana dan kapan saat yang tepat untuk menghapus templat pesan ini) Biografi ini tidak memiliki referensi atau sumber sehingga isinya tidak dapat dipastikan. Bantu memperbaiki artikel ini dengan menambahkan sumber tepercaya. Materi kontroversial atau trivial yang sumbernya tidak memadai atau tidak bisa dipercaya harus segera dihapus.Cari sumber: Jiml…

American college basketball season 1960–61 Cincinnati Bearcats men's basketballNCAA tournament National championsMVC championsConferenceMissouri Valley ConferenceRankingCoachesNo. 2APNo. 2Record27–3 (10–2 MVC)Head coachEd Jucker (1st season)Assistant coachTay BakerHome arenaArmory FieldhouseSeasons← 1959–601961–62 → 1960–61 Missouri Valley Conference men's basketball standings vte Conf Overall Team W   L   PCT W   L   PCT …

2016年美國總統選舉 ← 2012 2016年11月8日 2020 → 538個選舉人團席位獲勝需270票民意調查投票率55.7%[1][2] ▲ 0.8 %   获提名人 唐納·川普 希拉莉·克林頓 政党 共和黨 民主党 家鄉州 紐約州 紐約州 竞选搭档 迈克·彭斯 蒂姆·凱恩 选举人票 304[3][4][註 1] 227[5] 胜出州/省 30 + 緬-2 20 + DC 民選得票 62,984,828[6] 65,853,514[6] 得…

此條目可能包含不适用或被曲解的引用资料,部分内容的准确性无法被证實。 (2023年1月5日)请协助校核其中的错误以改善这篇条目。详情请参见条目的讨论页。 各国相关 主題列表 索引 国内生产总值 石油储量 国防预算 武装部队(军事) 官方语言 人口統計 人口密度 生育率 出生率 死亡率 自杀率 谋杀率 失业率 储蓄率 识字率 出口额 进口额 煤产量 发电量 监禁率 死刑 国债 外…

Japanese manga magazine Monthly Shōnen AceCategoriesShōnen manga[1]FrequencyMonthlyCirculation100,000 (2017)[2]Founded1994CompanyKadokawa ShotenCountryJapanBased inTokyoLanguageJapaneseWebsiteweb-ace.jp/shonenace (in Japanese) Monthly Shōnen Ace (月刊少年エース, Gekkan Shōnen Ēsu) is a monthly shōnen manga magazine in Japan published by Kadokawa Shoten, started in 1994. Unlike the big shōnen weeklies with circulation figures in the millions, Ace is aimed at a less m…

British TV series or programme RoversCreated byJoe WilkinsonWritten by Joe Wilkinson David Earl Directed byCraig CashStarring Craig Cash Diane Morgan Sue Johnston Steve Speirs Country of originUnited KingdomOriginal languageEnglishNo. of series1No. of episodes6ProductionProduction locationManchesterProduction companyJellylegs Productions[1]Original releaseNetworkSky OneRelease24 May (2016-05-24) –28 June 2016 (2016-06-28) Rovers is a British comedy television series that…

This article is about the Rolling Stones song. For the firearm malfunction term, see Hang fire. For the science fiction novel, see Hangfire. 1982 single by The Rolling StonesHang FireSingle by The Rolling Stonesfrom the album Tattoo You B-sideNeighboursReleasedMarch 1982 (US)[1]Recorded1978–1979 (basic track), 1981 (overdubs)GenreRock and roll[2]doo-wop[3]Length2:22LabelRolling StonesSongwriter(s)Jagger/RichardsProducer(s)The Glimmer TwinsThe Rolling Stones singles chro…

نهر تاريم خريطة توضح أنهار حوض تاريم خريطة من الاٌقمار الصناعية لحوض تاريم المنطقة البلد آسيا ، الصين ، تركستان الصينية ، شينجيانغ الخصائص الطول 1,321 كـم (821 ميل)[1] المجرى المنبع الرئيسي جبال كونلون وقراقرم  » الإحداثيات 39°28′N 88°19′E / 39.467°N 88.317°E / 39.467; 88…

Questa voce sull'argomento centri abitati dell'Île-de-France è solo un abbozzo. Contribuisci a migliorarla secondo le convenzioni di Wikipedia. La Celle Saint-Cloudcomune (dettagli) La Celle Saint-Cloud – VedutaIl municipio LocalizzazioneStato Francia Regione Île-de-France Dipartimento Yvelines ArrondissementSaint-Germain-en-Laye CantoneLe Chesnay TerritorioCoordinate48°51′N 2°09′E48°51′N, 2°09′E (La Celle Saint-Cloud)Coordinate: 48°51′N 2°09′E48°51…

Period in a couple's relationship which precedes their engagement and marriage Courting redirects here. For the band, see Courting (band). For other uses, see Courtship (disambiguation). God Speed by English artist Edmund Leighton, 1900: depicting an armored knight departing for war and leaving behind his wife or sweetheart Courtship is the period wherein some couples get to know each other prior to a possible marriage or committed romantic, de facto relationship. Courtship traditionally may beg…

جائزة إسبانيا الكبرى 1987 السباق 13 من أصل 16 في بطولة العالم لسباقات الفورمولا واحد موسم 1987 السلسلة بطولة العالم لسباقات فورمولا 1 موسم 1987  البلد إسبانيا  التاريخ 27 سبتمبر 1987 مكان التنظيم شريش، إسبانيا طول المسار 4.218 كيلومتر (2.620 ميل) المسافة 303.696 كيلومتر، (188.708 ميل) حالة ا…

يفتقر محتوى هذه المقالة إلى الاستشهاد بمصادر. فضلاً، ساهم في تطوير هذه المقالة من خلال إضافة مصادر موثوق بها. أي معلومات غير موثقة يمكن التشكيك بها وإزالتها. (ديسمبر 2018) جامع أسماء الله الحسنى معلومات عامة القرية أو المدينة الأنبار/ الرمادي الدولة العراق تاريخ بدء البناء 1424ه…

هذه المقالة يتيمة إذ تصل إليها مقالات أخرى قليلة جدًا. فضلًا، ساعد بإضافة وصلة إليها في مقالات متعلقة بها. (أبريل 2019) كالفين هاريسون معلومات شخصية الميلاد 20 يناير 1974 (50 سنة)  أورلاندو  الطول 186 سنتيمتر  الجنسية الولايات المتحدة  الوزن 75 كيلوغرام  أخوة وأخوات آلفين …

Artikel ini tidak memiliki referensi atau sumber tepercaya sehingga isinya tidak bisa dipastikan. Tolong bantu perbaiki artikel ini dengan menambahkan referensi yang layak. Tulisan tanpa sumber dapat dipertanyakan dan dihapus sewaktu-waktu.Cari sumber: Skor film – berita · surat kabar · buku · cendekiawan · JSTOR Skor film (bahasa Inggris: film score) adalah musik orisinal yang ditulis khusus untuk mengiringi sebuah film. Skor merupakan bagian dari ja…

Bruno Gissoni Bruno GissoniO ator em 2011 Nome completo Bruno Sang Gissoni Nascimento 9 de dezembro de 1986 (37 anos)Rio de Janeiro, RJ Nacionalidade brasileiro Parentesco Meio-irmão: Rodrigo Simas Meio-irmão: Felipe Simas Padrasto: Beto Simas Cônjuge Yanna Lavigne (c. 2018) Filho(a)(s) 2 Ocupação ator Período de atividade 2006-presente Prêmios Lista Bruno Sang Gissoni (Rio de Janeiro, 9 de dezembro de 1986) é um ator e ex-futebolista brasileiro. Ele ficou mais conhec…

Cet article est une ébauche concernant la musique classique et l’opéra ou l’opérette. Vous pouvez partager vos connaissances en l’améliorant (comment ?) selon les recommandations des projets correspondants. Portrait de Carl Orff. De temporum fine comœdia (La comédie de la fin des temps) est un opéra-oratorio de Carl Orff. Il s'agit de sa dernière œuvre et de celle où il pousse à son paroxysme ses recherches sur le rythme choral, la structure percussive et l'opposition entre…

Ontario provincial highway Highway 526Route informationMaintained by Ministry of Transportation of OntarioLength3.9 km[1] (2.4 mi)Existed1956[2]–presentMajor junctionsWest endBritt post officeEast end Highway 69 near Britt Station LocationCountryCanadaProvinceOntarioDivisionsParry Sound DistrictVillagesBritt Highway system Ontario provincial highways Current Former 400-series ← Highway 525→ Highway 527 Secondary Highway 526, commonly referred t…

National highway in India National Highway 346Map of the National Highway in redRoute informationLength222 km (138 mi)Major junctionsSouth endJharkhedaNorth endChanderi LocationCountryIndiaStatesMadhya Pradesh Highway system Roads in India Expressways National State Asian ← NH 46→ NH 47 National Highway 346, commonly referred to as NH 346 is a national highway in India.[1][2] It is a spur road of National Highway 46.[3] NH-346 traverses the st…

Untuk film 2002, lihat Pyaasa (film 2002). PyaasaPoster filmSutradaraGuru DuttProduserGuru DuttDitulis olehAbrar AlviPemeranGuru DuttMala SinhaWaheeda RehmanJohnny WalkerRehmanPenata musikS. D. BurmanSinematograferV.K. MurthyPenyuntingY. G. ChawhanTanggal rilis 19 Februari 1957 (1957-02-19) Durasi146 menitNegaraIndiaBahasaHindiAnggaran20 LAKH Pyaasa (Hindi: प्यासा Pyāsā, artinya Thirsty) adalah sebuah film India 1957 yang diproduksi, disutradarai, dan dibintangi oleh Gur…

Horacio Cartes Presiden Paraguay ke-50Masa jabatan15 Agustus 2013 – 15 Agustus 2018Wakil PresidenJuan AfaraAlicia PuchetaPendahuluFederico FrancoPenggantiMario Abdo Benítez Informasi pribadiLahir5 Juli 1956 (umur 68)Asunción, ParaguayPartai politikPartai ColoradoSunting kotak info • L • B Horacio Manuel Cartes Jara (lahir 5 Juli 1956[1]) adalah pengusaha asal Paraguay dan Presiden paraguay terpilih pada pemilihan umum April 2013. Referensi ^ (Portugis) 18 …