Worst financial malware in SA

 ·18 Apr 2015

Findings from researchers at TrendLabs, the research arm of Trend Micro have identified the top three financial malware families affecting South Africans.

Malware is a mechanism by which third parties can gain access to your computer or steal personal details and information, including passwords, through unlawful access to your information.

The TrendLabs researchers have highlighted several means through which users can become infected by these malware including USB drives, social media posts, instant messaging apps, malicious links and spam.

They can also be downloaded by other malware already residing in an infected computer.

According to the group’s findings,  Swisyn, Dorkbot and Zeus/Zbot are the biggest culprits for malware in SA.

Malware like Swisyn steals a user’s keystrokes and passwords, launches denial-of-service attacks, and downloads and runs malware. In addition to this attackers also configure this malware to spread via USB drives.

Cybercriminals can utilise Dorkbot to snatch user login credentials – like Internet banking passwords – and execute commands as well as download other malware.

The malware family Zeus/Zbot is widely known for data theft. Variants of Zeus/Zbot can monitor a user’s browser activities, including online banking transactions and some can even disable online banking security software.

“There are steps that users can take to protect themselves from these malware. For one, check if the connection is secure and if the banking page is legitimate before doing any transaction by examining the URL and the site’s security certificates,” said Gregory Anderson, country manager at Trend Micro South Africa.

“Secondly users should also be careful when opening emails that contain attachments and URLs in the email body. If the sender is not familiar, it would be best to verify their identity before opening emails or delete them without opening them – no matter how many millions the email is offering you or how legitimate the banking logos look. When using USB drives please make sure that the ‘autoplay’ option is disabled whenever handling removable drives, and scan the drive before opening any files.”

Another important factor is the security software that users have on their devices. According to the Trend Labs researchers it is best to install a security solution that is not only able to protect your machine against malware, but go a step further and check the reputations of websites and emails.

More on cybercrime

How cybercrime affects SA online shopping

The real cost of cyber crime

Financial firms lax on cybercrime losses

Show comments
Subscribe to our daily newsletter