New version of the Upatre Trojan

Security researchers have identified another interesting spam campaign, which exploits the reputation of large foreign financial institutions for the purpose of spreading malware. The malicious software, which is a new version of it Trojan (TROJ_UPATRE.YYKE), is displayed as a .MSG attachment, embedded in a second .MSG attachment. In this way cybercriminals try to bypass security defenses.

Upperre Trojan

The second .MSG file in turn contains a ZIP file, which is supposed to contain something important from the respective bank. When this file is opened on a Windows computer, the Upatre Trojan downloads a variant of the Zeus banking malware, ZBot, which aims to intercept users' bank account or card details, as well as a variant of NECURS.

NECURS is designed to disable features of computers, for the purpose of installation in breached systems.

Secnews.gr

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.087 registrants.

Written by giorgos

George still wonders what he's doing here ...

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).