Security researchers have discovered a new virus targeting Russian bank customers using many of the techniques employed by notorious malware such as Zeus and Carbeep.

Russian anti-virus firm Dr.Web says ‘Trojan.Bolik.1’ is a polymorphic file virus that infects 32-bit and 64-bit applications without any user intervention.

The tactics it employs to avoid detection and the amount of time it takes to remove from an infected system mean it can be particularly troublesome.

“Functions and architecture of Trojan.Bolik.1 are very sophisticated, which makes it really dangerous for Windows users,” said the researchers.

Trojan.Bolik.1

Once present on a system, the virus checks for executable files or on connected USB devices and embeds ‘Trojan.Bolik.1’ and the information it needs to run in an encrypted format. Once an infected program is executed, the virus decrypts and runs directly in-memory. A virtual file system stores the information it needs and it borrows web injections from Zeus to steal banking details.

“The main purpose of Trojan.Bolik.1 is to steal confidential information,” continued the researchers. “The Trojan can execute this function by several means. For example, it controls data transmitted by Microsoft Internet Explorer, Chrome, Opera, and Mozilla Firefox to steal information entered into input forms.

“Besides, the malware program can take screenshots and perform the keylogger functions. Trojan.Bolik.1 is also able to create its own proxy server and web server for file sharing with virus makers.

“All sent and received information is encrypted with a complicated algorithm and is then compressed.”

Zeus has been targeting bank customers for a number of years. The aforementioned web injects can trick users into entering details into portions of websites they think are genuine.

How much do you know about hackers and viruses? Take our quiz!

Steve McCaskill

Steve McCaskill is editor of TechWeekEurope and ChannelBiz. He joined as a reporter in 2011 and covers all areas of IT, with a particular interest in telecommunications, mobile and networking, along with sports technology.

Recent Posts

UK’s CMA Readies Cloud Sector “Behavioural” Remedies – Report

Targetting AWS, Microsoft? British competition regulator soon to announce “behavioural” remedies for cloud sector

4 hours ago

Former Policy Boss At X Nick Pickles, Joins Sam Altman Venture

Move to Elon Musk rival. Former senior executive at X joins Sam Altman's venture formerly…

6 hours ago

Bitcoin Rises Above $96,000 Amid Trump Optimism

Bitcoin price rises towards $100,000, amid investor optimism of friendlier US regulatory landscape under Donald…

8 hours ago

FTX Co-Founder Gary Wang Spared Prison

Judge Kaplan praises former FTX CTO Gary Wang for his co-operation against Sam Bankman-Fried during…

8 hours ago