Names | Ares | |
Category | Malware | |
Type | Banking trojan, Backdoor, Info stealer, Keylogger, Credential stealer, Exfiltration | |
Description | (Zscaler) In February 2021, Zscaler ThreatLabz identified a new Kronos variant that surfaced via spam campaigns to German speakers, which calls itself Ares. In Greek mythology, Ares is the son of Zeus and grandson of Kronos. Thus, the naming convention appears to refer to this new malware variant as the third generation of Kronos. Ares still appears to be in development alongside an information stealer that harvests credentials from various applications including VPN clients, web browsers, and the malware can exfiltrate arbitrary files and cryptocurrency wallets. | |
Information | <https://www.zscaler.com/blogs/security-research/ares-malware-grandson-kronos-banking-trojan> <https://www.zscaler.com/blogs/security-research/ares-banking-trojan-learns-old-tricks-adds-defunct-qakbot-dga> | |
Malpedia | <https://malpedia.caad.fkie.fraunhofer.de/details/win.ares> |
Last change to this tool card: 29 December 2022
Download this tool card in JSON format
Previous: APT3 Keylogger
Next: AresRAT
Changed | Name | Country | Observed | ||
Unknown groups | |||||
_[ Interesting malware not linked to an actor yet ]_ |
1 group listed (0 APT, 0 other, 1 unknown)
Digital Service Security Center Follow us on |
Report incidents |
|
+66 (0)2-123-1227 | ||
[email protected] |