• Trend Micro
  • About TrendLabs Security Intelligence Blog
Search:
  • Home
  • Categories
    • Ransomware
    • Vulnerabilities
    • Exploits
    • Targeted Attacks
    • Deep Web
    • Mobile
    • Internet of Things
    • Malware
    • Bad Sites
    • Spam
    • Botnets
    • Social
    • Open source
Home   »   Search results for: botnet takedown

RAMNIT: The Comeback Story of 2016

  • Posted on:February 20, 2017 at 12:01 am
  • Posted in:Malware
  • Author:
    Trend Micro
0

Earlier this year, Action Fraud, the UK’s fraud and cybercrime reporting center, issued a warning that cyber criminals were taking advantage of generous individuals by sending phishing emails purportedly from Migrant Helpline, a charity organization dedicated to assisting migrants across the country. These emails contain a link that is supposed to lead to a donations page. However, instead of landing on a legitimate website, the user instead unwittingly downloads one of the most tenacious malwares in the wild: the veteran Trojan known as RAMNIT, which staged a comeback in 2016.

Read More

Avalanche: Thwarting Cybercriminal Hazards with Law Enforcement Collaboration

  • Posted on:December 7, 2016 at 7:34 am
  • Posted in:Botnets, Malware
  • Author:
    Robert McArdle (Senior Threat Researcher)
0

On November 30th, an international law enforcement operation stamped out Avalanche, a large-scale content and management platform designed for the delivery of bullet-proof botnets. Avalanche’s scale and scope spanned victims from 180 countries, over 800,000 domains in 60+ top-level domains (TLD), more than one million phishing and spam e-mails, 500,000 infected machines worldwide, and 130TB of captured and analyzed data.

The coordinated effort from international law enforcement agencies that include Germany’s Public Prosecutor’s Office Verden and the Lüneburg Police, the U.S.’s Attorney Office for the Western District of Pennsylvania, Department of Justice and the Federal Bureau of Investigation (FBI), Europol, and Eurojust as well as partners in ShadowServer, resulted in one of the most successful anti-cybercrime operations in recent years.

Read More
Tags: Avalanchebanking malwarebotnetlaw enforcement

Online Banking Threats in 2015: The Curious Case of DRIDEX’s Prevalence

  • Posted on:March 17, 2016 at 10:03 am
  • Posted in:Malware
  • Author:
    Trend Micro
1

The thing about takedowns is that these do not necessarily wipe out the cybercriminal operations. In 2014, the ZeroAccess takedown has affected the botnet’s click fraud operation, but its infections continued to soar. DRIDEX’s case is similar as it continues to figure predominantly in the threat landscape despite takedown of its multiple command-and-control servers last October 2015.

Read More
Tags: DRIDEXmacro malwareonline banking threats

Macro Malware Strides in New Direction, Uses Forms to Store its Code

  • Posted on:March 3, 2016 at 1:10 pm
  • Posted in:Malware, Spam
  • Author:
    Trend Micro
3

The resurgence and continued prevalence of macro malware could be linked to several factors, one of which is their ability to bypass traditional antimalware solutions and  sandboxing technologies. Another factor is the continuous enhancements in their routines: just recently, we observe that the macro malware related to DRIDEX and the latest crypto-ransomware variant, Locky Ransomware used Form object in macros to obfuscate the malicious code. With this improvement, it could further aid cybercriminals or attackers to hide any malicious activity they perform in their target network or system.

Read More
Tags: Locky Ransomwaremacro malwareransomware

DRIDEX Spam Runs Resurface Against US Targets

  • Posted on:November 25, 2015 at 4:36 am
  • Posted in:Malware, Spam
  • Author:
    Ryan Flores (Threat Research Manager)
2

DRIDEX is steadily regaining its footing in the US just over a month after its takedown orchestrated by US and UK law enforcement agencies. Taking down servers is a significant step in crippling botnets, but unless all infrastructure are destroyed and all threat actors are caught, threats like DRIDEX are bound to resurface. As such, it…

Read More
Tags: DRIDEXfinancial spamonline banking malwareSpam
Page 4 of 10 « ‹ 345 › »

Security Predictions for 2020

  • Cybersecurity in 2020 will be viewed through many lenses — from differing attacker motivations and cybercriminal arsenal to technological developments and global threat intelligence — only so defenders can keep up with the broad range of threats.
    Read our security predictions for 2020.

Business Process Compromise

  • Attackers are starting to invest in long-term operations that target specific processes enterprises rely on. They scout for vulnerable practices, susceptible systems and operational loopholes that they can leverage or abuse. To learn more, read our Security 101: Business Process Compromise.

Popular Posts

Sorry. No data so far.

Stay Updated

  • Home and Home Office
  • |
  • For Business
  • |
  • Security Intelligence
  • |
  • About Trend Micro
  • Asia Pacific Region (APAC): Australia / New Zealand, 中国, 日本, 대한민국, 台灣
  • Latin America Region (LAR): Brasil, México
  • North America Region (NABU): United States, Canada
  • Europe, Middle East, & Africa Region (EMEA): France, Deutschland / Österreich / Schweiz, Italia, Россия, España, United Kingdom / Ireland
  • Privacy Statement
  • Legal Policies
  • Copyright © Trend Micro Incorporated. All rights reserved.