<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>The Italian Honey Project &#187; zbot</title>
	<atom:link href="http://www.honeynet.it/tag/zbot/feed" rel="self" type="application/rss+xml" />
	<link>http://www.honeynet.it</link>
	<description>The Italian chapter of the Honeynet Research Alliance</description>
	<lastBuildDate>Wed, 11 Jan 2012 11:44:56 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Zbot Targets Android Users &#8211; Softpedia</title>
		<link>http://www.honeynet.it/uncategorized/zbot-targets-android-users-softpedia</link>
		<comments>http://www.honeynet.it/uncategorized/zbot-targets-android-users-softpedia#comments</comments>
		<pubDate>Mon, 11 Jul 2011 11:10:18 +0000</pubDate>
		<dc:creator>marco.riccardi</dc:creator>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[Botnet]]></category>
		<category><![CDATA[Financial Botnet]]></category>
		<category><![CDATA[mobile]]></category>
		<category><![CDATA[zbot]]></category>
		<category><![CDATA[zeus]]></category>

		<guid isPermaLink="false">http://www.honeynet.it/?p=420</guid>
		<description><![CDATA[
Security researchers have identified a Zbot component designed for Android which steals mobile transaction authentication numbers send by banks via SMS.ZeuS, aka Zbot, is one of the most popular banking trojans. Even though the original author of the malware has retired, the source code is available online for anyone to modify and fit it to [...]
]]></description>
			<content:encoded><![CDATA[<blockquote><p>Security researchers have identified a Zbot component designed for Android which steals mobile transaction authentication numbers send by banks via SMS.ZeuS, aka Zbot, is one of the most popular banking trojans. Even though the original author of the malware has retired, the source code is available online for anyone to modify and fit it to their needs.Zbot originally targeted desktop systems and stole financial information and online banking credentials which fraudsters exploited.</p></blockquote>
<p>via <a href="http://news.softpedia.com/news/Zbot-Targets-Android-Users-210645.shtml">Zbot Targets Android Users &#8211; Softpedia</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.honeynet.it/uncategorized/zbot-targets-android-users-softpedia/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Zbot authors forge Kaspersky Digital Signature</title>
		<link>http://www.honeynet.it/botnet/zbot-authors-forge-kaspersky-digital-signature</link>
		<comments>http://www.honeynet.it/botnet/zbot-authors-forge-kaspersky-digital-signature#comments</comments>
		<pubDate>Fri, 06 Aug 2010 07:43:00 +0000</pubDate>
		<dc:creator>marco.riccardi</dc:creator>
				<category><![CDATA[Botnet]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[Financial Botnet]]></category>
		<category><![CDATA[zbot]]></category>
		<category><![CDATA[zeus]]></category>

		<guid isPermaLink="false">http://www.honeynet.it/?p=333</guid>
		<description><![CDATA[
Security researchers warn that multiple recent Zbot variants are using a forged digital signature in an attempt to bypass antivurs detection. Ironically the digital signature was copied from a ZeuS removal tool developed by Kaspersky Lab. [..] There have been isolated cases of digitally-signed malware before, but the practice never really took off, primarily because [...]
]]></description>
			<content:encoded><![CDATA[<blockquote><p>Security researchers warn that multiple recent Zbot variants are using a forged digital signature in an attempt to bypass antivurs detection. Ironically the digital signature was copied from a ZeuS removal tool developed by Kaspersky Lab.</p>
<p>[..]</p>
<p>There have been isolated cases of digitally-signed malware before, but the practice never really took off, primarily because malware authors believed the effort doesn&#8217;t justify the benefits.</p>
<p>[..]</p></blockquote>
<p>via <a href="http://news.softpedia.com/news/Zbot-Authors-Forge-Kaspersky-Digital-Signature-150817.shtml">Zbot Authors Forge Kaspersky Digital Signature &#8211; Copy it from ZeuZ removal tool &#8211; Softpedia</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.honeynet.it/botnet/zbot-authors-forge-kaspersky-digital-signature/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Zeus “in-the-cloud” &#8211; CA Security Advisor Research Blog</title>
		<link>http://www.honeynet.it/botnet/zeus-%e2%80%9cin-the-cloud%e2%80%9d-ca-security-advisor-research-blog</link>
		<comments>http://www.honeynet.it/botnet/zeus-%e2%80%9cin-the-cloud%e2%80%9d-ca-security-advisor-research-blog#comments</comments>
		<pubDate>Thu, 10 Dec 2009 14:36:01 +0000</pubDate>
		<dc:creator>marco.riccardi</dc:creator>
				<category><![CDATA[Botnet]]></category>
		<category><![CDATA[Botnet 2.0]]></category>
		<category><![CDATA[Intelligence]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[zbot]]></category>
		<category><![CDATA[zeus]]></category>

		<guid isPermaLink="false">http://www.honeynet.it/?p=155</guid>
		<description><![CDATA[
A new wave of a Zeus bot (Zbot) variant was spotted taking advantage of Amazon EC2’s cloud-based services for its C&#38;C (command and control) functionalities. via Zeus “in-the-cloud” &#8211; CA Security Advisor Research Blog.
]]></description>
			<content:encoded><![CDATA[<blockquote><p>A new wave of a Zeus bot (Zbot) variant was spotted taking advantage of Amazon EC2’s cloud-based services for its C&amp;C (command and control) functionalities.</p></blockquote>
<p>via <a href="http://community.ca.com/blogs/securityadvisor/archive/2009/12/09/zeus-in-the-cloud.aspx">Zeus “in-the-cloud” &#8211; CA Security Advisor Research Blog</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.honeynet.it/botnet/zeus-%e2%80%9cin-the-cloud%e2%80%9d-ca-security-advisor-research-blog/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

