• Trend Micro
  • About TrendLabs Security Intelligence Blog
Search:
  • Home
  • Categories
    • Ransomware
    • Vulnerabilities
    • Exploits
    • Targeted Attacks
    • Deep Web
    • Mobile
    • Internet of Things
    • Malware
    • Bad Sites
    • Spam
    • Botnets
    • Social
    • Open source
Home   »   Author / Jasper Manuel (Threat Response Engineer)

Jasper Manuel

Threat Response Engineer

Another Modified ZeuS Variant Seen in the Wild

  • Posted on:October 16, 2011
  • Posted in:Botnets
  • Posted by:
    Jasper Manuel (Threat Response Engineer)
2

In the past, we reported about the emergence of malware based on the leaked ZeuS code such as Ice IX and ZeuS 2.3.2.0. The usage of the leaked code continued on since then and has resulted in attacks such as the one I’m about to share on. My colleagues and I have been monitoring another new…

Read More

ZeuS Gets Another Update

  • Posted on:September 2, 2011
  • Posted in:Botnets, Malware
  • Posted by:
    Jasper Manuel (Threat Response Engineer)
1

With ZeuS’s source code leakage, we expected more cybercriminals to craft their own HTTP-controlled bots based on ZeuS. Last week, we started to see the first generation of modified ZeuS variants called Ice IX, based on the said source code. According to the seller’s post on underground forums, one of Ice IX’s main selling points…

Read More

Old ZeuS Variant Returns for Christmas

  • Posted on:December 23, 2010
  • Posted in:Malware, Spam
  • Posted by:
    Jasper Manuel (Threat Response Engineer)
7

The last time a significant ZeuS/ZBOT development cropped up in the threat landscape, a new ZeuS-LICAT variant was identified. It was also not too long ago when news of a possible merger between the creator of ZeuS and SpyEye made headlines. This time, it is interesting to see an earlier version of the notorious malware…

Read More

File Infector Uses Domain Generation Technique Like DOWNAD/Conficker

  • Posted on:October 7, 2010
  • Posted in:Malware
  • Posted by:
    Jasper Manuel (Threat Response Engineer)
22

Trend Micro has received reports from users about a new, dangerous file infector. This threat, detected as PE_LICAT.A, uses a domain generation algorithm, a technique last seen in WORM_DOWNAD/Conficker variants. This technique allows the file infector to download and execute malicious files from various servers on the Internet. Like WORM_DOWNAD, PE_LICAT.A generates a list of…

Read More

ZeuS/ZBOT and SALITY Jump on the LNK Exploit Bandwagon

  • Posted on:July 27, 2010
  • Posted in:Bad Sites
  • Posted by:
    Jasper Manuel (Threat Response Engineer)
1

As reported last week, exploits targeting the Windows shortcut zero-day vulnerability have risen in number. It is also now being used to spread ZBOT variants via malicious attachments to spammed messages, now blocked by Trend Micro products, with the subject Microsoft Windows Security Advisory and the following message: The message claims to come from Microsoft…

Read More

Security Predictions for 2019

  • Our security predictions for 2019 are based on our experts’ analysis of the progress of current and emerging technologies, user behavior, and market trends, and their impact on the threat landscape. We have categorized them according to the main areas that are likely to be affected, given the sprawling nature of the technological and sociopolitical changes under consideration.
    Read our security predictions for 2019.

Business Process Compromise

  • Attackers are starting to invest in long-term operations that target specific processes enterprises rely on. They scout for vulnerable practices, susceptible systems and operational loopholes that they can leverage or abuse. To learn more, read our Security 101: Business Process Compromise.

Popular Posts

  • August Patch Tuesday: Update Fixes ‘Wormable’ Flaws in Remote Desktop Services, VBScript Gets Disabled by Default
  • TA505 At It Again: Variety is the Spice of ServHelper and FlawedAmmyy
  • Jenkins Admins: Relying on Default Settings Could Put Master at Risk of Remote Code Execution Attacks
  • Adware Posing as 85 Photography and Gaming Apps on Google Play Installed Over 8 Million Times
  • Uncovering a MyKings Variant With Bootloader Persistence via Managed Detection and Response

Stay Updated

  • Home and Home Office
  • |
  • For Business
  • |
  • Security Intelligence
  • |
  • About Trend Micro
  • Asia Pacific Region (APAC): Australia / New Zealand, 中国, 日本, 대한민국, 台灣
  • Latin America Region (LAR): Brasil, México
  • North America Region (NABU): United States, Canada
  • Europe, Middle East, & Africa Region (EMEA): France, Deutschland / Österreich / Schweiz, Italia, Россия, España, United Kingdom / Ireland
  • Privacy Statement
  • Legal Policies
  • Copyright © Trend Micro Incorporated. All rights reserved.