- RT @S21secSecurity: Testing your ZeuS variant?: The ZeuS source code leak is not recent, and we have seen new variants like Ice-I... http:… 1 day ago
- RT @nullandnull: Ramnit Analysis that I recently wrapped up - http://t.co/97ETS4YlSI - thanks to @push_pnx & @hiddenillusion for the feedba… 1 day ago
- RT @nirsoft: CurrPorts - Added support for filtering by process ID (In Advanced Filters window), for example: include:process:327 2 days ago
- RT @joe4security: Analyzing Pincer for Android with Joe Sandbox Mobile 1.0: http://t.co/zoc0EeqK6n 2 days ago
Android Forensics
Memory Forensics
Malware Tools
- Anubis
- Buster Sandbox Analyzer
- Cuckoo Sandbox
- Emsisoft HiJackFree
- GMER
- HiJackHunter
- HiJackThis
- Hitman Pro
- Joe Sandbox Document
- Joe Security
- Jotti
- JSDetox
- jsunpack
- Malware Analyser
- Malwarebytes' Anti-Malware
- Malwr.com
- Malzilla
- OSAM Autorun Manager
- REMnux
- Sandboxie
- Secunia | PSI
- Secure Banking
- Security Task Manager
- SIFT Workstation
- Sysinternals
- ThreatExpert
- ThreatTrack
- URL Content Dump
- urlQuery
- VirSCAN
- VirusTotal
- Wepawet
- YARA
Password Forensics
Blog List
- abuse.ch
- Anti-Botnetz Beratungszentrum
- Bleeping Computer
- Botnets.fr
- Computer Security Blog
- Contagio
- F-Secure
- G Data SecurityBlog
- Imperva
- Kafeine
- Lenny Zeltser
- Malware at Stake
- MNIN Security Blog
- Naked Security
- NirBlog
- ratNetw0rk
- Reconstructer
- rkhunter
- SpiderLabs
- The Hackers News
- Thisisu
- Virus Tracker
- Xylibox
Community
Archives
Category Archives: Internet Banking Fraud
Phishing variants from online banking trojans
1. iTAN-Thief After correct login the malicious software inserts a query for several iTANs. The prompted iTANs will be send together with the access data to the fraudster and will be misused afterwards. 2. Real-Time Attacks (Man-in-the-middle) The malicious software … Continue reading
Malware Analysis (Internet Banking Fraud)
Here are my usual steps: 1. Create a forensic image (.e01) of suspect media (System Hard Disk). 2. Objectives of the analysis: - Identification of the involved banking trojan - Detection of the trojan files on the infected computer - … Continue reading