[REVOKED BY THE WRITER]Wow, hold on, the attachment is Zbot yes? You mean the downloaded one? [/REVOKED]
I made a mistake! I am sorry. This is not a Zeus at all. Please kindly move the previous post to the proper malware threat.
forty-six wrote:You work on linux too much lately. :D This is "dridex" variant of Feodo.
Haha, Ouch! yes, :) too much ELF recently. But I think I'll focus on this platform for the future.
I know is a pws (the downloaded one) , poc:
https://twitter.com/MalwareMustDie/stat ... 1030629378 but first time seeing this type..
Well..That explains the 8080 gates called. How old this "D"ridex variant started?