Security Basics mailing list archives

RE: zeus virus


From: "Sacks, Cailan C" <Cailan.Sacks () standardbank co za>
Date: Mon, 13 Sep 2010 09:43:57 +0200

Be very interested to find out which bank, but Trusteer has a product called Rapport that mitigates against Zeus. 
Basically it protects the browser DOM and keystrokes preventing most malware from doing anything untoward within the 
user session. It also provides certificate verification, hostname to IP verification, so man in the middle and man in 
the browser type attacks are also protected against.

See http://www.trusteer.com/solutions/home-users/online-security there is a how it works presentation on the side.

-----Original Message-----
From: listbounce () securityfocus com [mailto:listbounce () securityfocus com] On Behalf Of enquiries () globalart4u com
Sent: Wednesday, August 11, 2010 12:45 PM
To: security-basics () securityfocus com
Subject: zeus virus

according to the papers today a bank has been hacked and over £680k has been stolen from customers accounts.  Does 
anyone know which bank and also i understand only 10% of anti-virus / malware software can detect this zeus virus as it 
keeps changing.  What is the best preventation currently?  Is there such a thing as a smart anti-virus like the zeus 
that can detect these changes or are they all still static?

thanks

------------------------------------------------------------------------
Securing Apache Web Server with thawte Digital Certificate
In this guide we examine the importance of Apache-SSL and who needs an SSL certificate.  We look at how SSL works, how 
it benefits your company and how your customers can tell if a site is secure. You will find out how to test, purchase, 
install and use a thawte Digital Certificate on your Apache web server. Throughout, best practices for set-up are 
highlighted to help you ensure efficient ongoing management of your encryption keys and digital certificates.

http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442f727d1
------------------------------------------------------------------------

Standard Bank email disclaimer and confidentiality note
Please go to http://www.standardbank.co.za/site/homepage/emaildisclaimer.html to read our email disclaimer and 
confidentiality note. Kindly email disclaimer () standardbank co za (no content or subject line necessary) if you 
cannot view that page and we will email our email disclaimer and confidentiality note to you.

------------------------------------------------------------------------
Securing Apache Web Server with thawte Digital Certificate
In this guide we examine the importance of Apache-SSL and who needs an SSL certificate.  We look at how SSL works, how 
it benefits your company and how your customers can tell if a site is secure. You will find out how to test, purchase, 
install and use a thawte Digital Certificate on your Apache web server. Throughout, best practices for set-up are 
highlighted to help you ensure efficient ongoing management of your encryption keys and digital certificates.

http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442f727d1
------------------------------------------------------------------------


Current thread: