KINS

Description

(IBM) Trusteer researcher Avidan Avraham, who conducted a thorough analysis on the new variant, explains that ZeuS.Maple is a heavily modified version of Zeus 2.0.8.9. It implements unique browser re-patching techniques (browser patching is a method of stealing information from browser sessions; re-patching ensures the patch stays in place), an alternative naming generation algorithm, different anti-debugging and new anti-VM capabilities. It uses an encrypted configuration stored in the Windows registry, and in order to remain stealthy, ZeuS.Maple distribution in the wild is limited and controlled.

Names

Name
KINS
Maple
Zeus.Maple
Kasper Internet Non-Security

Category

Malware

Type

  • Banking trojan
  • Credential stealer

Information

Malpedia

Other Information

Uuid

0a94f5ac-0390-4c90-aeea-1e41652dc492

Last Card Change

2022-12-28