Spacecraft
A faster spreading polymorphic version of the Zeus online banking password stealing Trojan is targeting computers in the US and UK, a web security company has warned. The new version of Zeus has been detected on one in every 3, computers monitored by the Trusteer Rapport service, the firm said. This is an unprecedented rate of distribution for new financial malware code, with Zeus version 1. The completely redesigned malware is using advanced polymorphic techniques to avoid antivirus detection and supports HTML injection and transaction tampering for Firefox to bypass authentication processes, according to Trusteer. The company has alerted financial institutions and is recommending they maintain a layered approach to malware blocking and make sure they have the proper detection, investigation, mitigation, and response tools in place. Zeus, the most prevalent financial malware, typically infects PCs and then waits for the user to log onto a list of targeted banks and financial institutions to steal their credentials, which are sent to a remote server in real time.