
| Names | KINS Maple Zeus.Maple Kasper Internet Non-Security | |
| Category | Malware | |
| Type | Banking trojan, Credential stealer | |
| Description | (IBM) Trusteer researcher Avidan Avraham, who conducted a thorough analysis on the new variant, explains that ZeuS.Maple is a heavily modified version of Zeus 2.0.8.9. It implements unique browser re-patching techniques (browser patching is a method of stealing information from browser sessions; re-patching ensures the patch stays in place), an alternative naming generation algorithm, different anti-debugging and new anti-VM capabilities. It uses an encrypted configuration stored in the Windows registry, and in order to remain stealthy, ZeuS.Maple distribution in the wild is limited and controlled. | |
| Information | <https://securityintelligence.com/zeus-maple-variant-targets-canadian-online-banking-customers/> <https://github.com/nyx0/KINS> | |
| Malpedia | <https://malpedia.caad.fkie.fraunhofer.de/details/win.kins> | |
Last change to this tool card: 28 December 2022
Download this tool card in JSON format
Previous: KingOfHearts
Next: Kitkiot
| Changed | Name | Country | Observed | ||
Unknown groups | |||||
| _[ Interesting malware not linked to an actor yet ]_ | |||||
1 group listed (0 APT, 0 other, 1 unknown)
|
Digital Service Security Center Follow us on |
Report incidents |
|
| +66 (0)2-123-1227 | ||
| [email protected] | ||