Site Archives Zeus

Increase in Zeus Phishing Emails

Posted on February 8th, 2010

GSA Reference Number: AD100205-01

Simply Put: Gladiator has been alerted to an increased number of phishing scams trying to trick users into installing Zeus Trojans.  These emails are sent using spoofed sender addresses, generally pretending to be from government sources such as the NSA or Pentagon.  The emails also contain text that could  reasonably appear to be from the supposed sender, such as a government advisory or alert.

NACHA Phishing Email

Posted on November 12th, 2009

GSA Reference Number: AD091112-01

Simply Put: A fraudulent email is currently circulating that appears to be from NACHA, the Electronics Payment Association.  The email includes a link that will forward users to a fake website that instructs the user to download a report about a failed ACH transaction.  This report is actually malicious software (Zeus/Jabber).  We have already detected infections at several financial institutions as a result of this scam.