• Home
  • Advertise
  • Contact Us
  • Free eBooks
  • Infographics
  • About Us


  • Technology
    • Programming
      • Java
      • PHP
      • HTML
      • CSS
      • Javascript
      • XML
      • AJAX
      • JQuery
      • Perl
      • IDE
    • CMS
      • Opencart
      • WordPress
      • Prestashop
      • Magento
    • Database
  • Security
    • Cyber Laws
    • Digital Signature
    • Passwords
    • Reverse Engineering
    • Steganography
    • Forensics
    • Networking
  • E-Commerce
  • Digital Media
    • SEO
    • Social Media
      • Facebook
  • Gadgets
    • Laptops
    • Tablets
    • Just CellPhones
    • Social CellPhones
  • OS
    • Linux
    • Mac
    • Windows
    • iOS
    • Android
  • Courses
    • Development in Android
  • General

Breaking

The supercomputer "Tianhe-2" Takes No. 1 Ranking on 41st TOP500 List

Export tweets in different formats

OWASP - Top 10 Vulnerabilities

New Windows-backdoor deletes MBR

The world's first CPU of 5GHz

Critical vulnerability in 60 + models of CCTV and IP-cameras

Hack a Samsung TV with SmartTV function

The man who "almost broke the Internet"

The search continues for the sixth member of LulzSec

Statistics on the botnet Carna


Zeus is not visible to most anti-viruses

0 Comment
 01 Jul 2012   Posted by synt4x

1 Star2 Stars3 Stars4 Stars5 Stars
Loading ... Loading ...


flattr this!

ThreatMetrix Labs: Make a Trojan once again invisible to antivirus software authors took a couple of hours.

The widespread application of Trojan Zeus, as well as its enhanced support from the virus writers cause for serious concern. This statement was made by experts from ThreatMetrix Labs, which are examined in detail the recent modification of the virus in his analytical report.

Experts recalled that at the moment Zeus does not use the C & C-servers, replacing them with the commands being sent to the P2P network through one of the bots. The integrity of the entire system is maintained by strong encryption of configuration files. Moreover, the constant change of cryptographic protection of Zeus does not visible to the existing anti-virus systems, to emphasize the ThreatMetrix Labs.

“The constant change in the way it (Ed. – virus) encryption alarming. In fact, experts ThreatMetrix recorded at least six different ways, “- the researchers reported in the report. According to them, continual change in attack vectors and cryptographic protection makes it virtually powerless to antivirus companies.

Note also that the specialists have provided some examples of new types of attacks Zeus, which was detected after decoding of a configuration file (the sample was analyzed by Zeus with a MD5-hash 7ebe4e6f8e5ea5981f4b32cd9465e6a3).

According to ThreatMetrix Labs, a modification of this Trojan has 988 functions, 561 of whom had in the past year, and another 427 have been added since November 2011, indicating a very fast pace appears varieties Trojan.

Currently, configuration files are encrypted with Zeus four-byte key XOR, formed from these elements: (item length << 0×10) | (0xFFFF & item id) | (BinStorage Count << 8).

Changing the encryption method prior to this variation of the virus taken from the authors’ only a few hours, “but it made a new version of Zeus is again not visible to the vendors.

Full report here: Download
Beginner’s Guide to SSL Certificates:Download Here.

 

Spread The Word:

  • Facebook
  • Twitter
  • Pinterest
  • StumbleUpon
  • Google +1
  • Digg
  • Reddit
  • Email
  • LinkedIn
  • Tumblr
    Share This


Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

You may use these HTML tags and attributes: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>

  • Find Us On Facebook

  • Airtel Hello Tunes

  • Ads.

  • Ads.

  • Shrugs Online


  • More...

    • Advertise
    • Crawl Fashion | Fashion Directory
    • Information Technology Act 2000 Compliance [Sec 43A and Sec 72A]
    • Java Tutorial
    • Netbeans Tutorial
    • Photography Blogs
    • Street Shopping
    • Virus Protection And Internet Security
  • Recent Posts

    • OWASP - Top 10 Vulnerabilities
    • New Windows-backdoor deletes MBR
    • Critical vulnerability in 60 + models of CCTV and IP-cameras
    • Hack a Samsung TV with SmartTV function
    • The man who "almost broke the Internet"
    • The search continues for the sixth member of LulzSec
  • Enter your email address to subscribe to "Bytes" Mag & receive THE latest updates on Tech!


Copyright © LetsByteCode Inc.
DMCA.com
loading Cancel
Post was not sent - check your email addresses!
Email check failed, please try again
Sorry, your blog cannot share posts by email.