Citadel
Description
(Malwarebytes) Citadel is an offspring of the (too) popular Zeus crimekit whose main goal is to steal banking credentials by capturing keystrokes and taking screenshots/videos of victims’ computers. Citadel came out circa January 2012 in the online forums and quickly became a popular choice for criminals. A version of Citadel (1.3.4.5) was leaked in late October and although it is not the latest (1.3.5.1), it gives us a good insight into what tools the bad guys are using to make money.
Names
Name |
---|
Citadel |
Category
Malware
Type
- Banking trojan
- POS malware
- Info stealer
- Credential stealer
Information
- https://blog.malwarebytes.com/threat-analysis/2012/11/citadel-a-cyber-criminals-ultimate-weapon/
- https://www.arbornetworks.com/blog/asert/the-citadel-and-gameover-campaigns-of-5cb682c10440b2ebaf9f28c1fe438468/
- http://blog.jpcert.or.jp/2016/02/banking-trojan—27d6.html
- http://www.xylibox.com/2016/02/citadel-0011-atmos.html
- https://www.secureworks.com/research/point-of-sale-malware-threats
- https://en.wikipedia.org/wiki/Citadel_(malware)
Malpedia
Alienvault Otx
Other Information
Uuid
7e9130ea-d66e-4ea8-b950-2a7dae68f51b
Last Card Change
2020-05-25