A team from University of Mannheim has published a case-study about trojan keyloggers and their dropzones. What I found particularly interesting is the analysis of configuration mechanisms: The two examined families of keyloggers (Limbo/Netshell and ZeuS/Zbot) both contact servers for updated configuration, whereas the ZeuS family is more advanced and even allows to take screenshots to defeat virtual keyboards.
Continue reading "Interesting Paper on Trojan Keyloggers"