• Trend Micro
  • About TrendLabs Security Intelligence Blog
Search:
  • Home
  • Categories
    • Ransomware
    • Vulnerabilities
    • Exploits
    • Targeted Attacks
    • Deep Web
    • Mobile
    • Internet of Things
    • Malware
    • Bad Sites
    • Spam
    • Botnets
    • Social
    • Open source
Home   »   Author / Abraham Camba (Threat Researcher)

Abraham Camba

Threat Researcher

DYRE Banking Malware Upsurges; Europe and North America Most Affected

  • Posted on:June 2, 2015
  • Posted in:Malware, Spam
  • Posted by:
    Abraham Camba (Threat Researcher)
0

Online banking users in Europe and North America are experiencing the upsurge of DYRE, a malware family notorious for the multiple ways it steals data and its ties to parcel mule scams, among others. There has been a 125% increase of DYRE-related infections worldwide this quarter compared to the last, proving that cybercriminal interest in…

Read More
Tags: DYREEMEA cybercrimeNorth America cybercrimeonline bankingUPATRE

Beware the “Insert and Link” Feature in Microsoft Office

  • Posted on:March 18, 2015
  • Posted in:Malware, Targeted Attacks
  • Posted by:
    Abraham Camba (Threat Researcher)
2

Throughout course of my monitoring future and possible targeted attacks, I recently chanced upon a spear-phishing email sent to an undisclosed recipient that contains three seemingly harmless documents. I was curious about the attached documents so I first checked the one titled AlSajana Youth Center financial Report.docx. The so-called financial report turned out to be…

Read More
Tags: Microsoft OfficeMicrosoft Word

64-bit Version of MIRAS Used in Targeted Attack

  • Posted on:September 15, 2014
  • Posted in:Malware, Targeted Attacks
  • Posted by:
    Abraham Camba (Threat Researcher)
2

We have been investigating the MIRAS malware family, which was recently linked to attacks that targeted a Europe-based IT company. Our analysis shows that MIRAS, or BKDR64_MIRAS.B is a 64-bit malware that was used for the data exfiltration stage in a targeted attack. MIRAS is available in 32-bit (BKDR_MIRAS.B) and 64-bit (BKDR64_MIRAS.B) Windows operating systems. An analysis of BKDR64_MIRAS.B To serve…

Read More
Tags: 64-bit64-bit malware64-bit systemsbackdoorMIRAStargeted attackstrend micro

PoisonIvy Uses Legitimate Application as Loader

  • Posted on:June 20, 2013
  • Posted in:Malware
  • Posted by:
    Abraham Camba (Threat Researcher)
2

I recently obtained a PoisonIvy sample which uses a legitimate application in an effort to stay under the radar. In this case, the PoisonIvy variant detected as BKDR_POISON.BTA (named as newdev.dll) took advantage of a technique known as a DLL preloading attack (aka binary planting) instead of exploiting previously known techniques. The malware was located…

Read More
Tags: backdoorbinary plantingDLL preloadingPoisonIvy

BKDR_RARSTONE: New RAT to Watch Out For

  • Posted on:February 27, 2013
  • Posted in:Malware, Targeted Attacks
  • Posted by:
    Abraham Camba (Threat Researcher)
1

Last year, we reported about PlugX a breed of Remote Access Trojan (RAT) used in certain high-profile APT campaigns. We also noted some of its noteworthy techniques, which include its capability to hide its malicious codes by decrypting and loading a backdoor “executable file” directly into memory, without the need to drop the actual “executable…

Read More
Page 1 of 212

Security Predictions for 2020

  • Cybersecurity in 2020 will be viewed through many lenses — from differing attacker motivations and cybercriminal arsenal to technological developments and global threat intelligence — only so defenders can keep up with the broad range of threats.
    Read our security predictions for 2020.

Business Process Compromise

  • Attackers are starting to invest in long-term operations that target specific processes enterprises rely on. They scout for vulnerable practices, susceptible systems and operational loopholes that they can leverage or abuse. To learn more, read our Security 101: Business Process Compromise.

Popular Posts

Sorry. No data so far.

Stay Updated

  • Home and Home Office
  • |
  • For Business
  • |
  • Security Intelligence
  • |
  • About Trend Micro
  • Asia Pacific Region (APAC): Australia / New Zealand, 中国, 日本, 대한민국, 台灣
  • Latin America Region (LAR): Brasil, México
  • North America Region (NABU): United States, Canada
  • Europe, Middle East, & Africa Region (EMEA): France, Deutschland / Österreich / Schweiz, Italia, Россия, España, United Kingdom / Ireland
  • Privacy Statement
  • Legal Policies
  • Copyright © Trend Micro Incorporated. All rights reserved.