Trusted Design

Banking Trojan Attempts To Steal Brazillion$

概要

Banking trojans are among some of the biggest threats to everyday users as they directly impact the user in terms of financial loss. Talos recently observed a new campaign specific to South America, namely Brazil. This campaign was focused on various South American banks in an attempt to steal credentials from the user to allow for illicit financial gain for the malicious actors. The campaign Talos analysed focused on Brazilian users and also attempted to remain stealthy by using multiple methods of re-direction in an attempt to infect the victim machine. It also used multiple anti-analysis techniques and the final payload was written in Delphi which is quite unique to the banking trojan landscape.

Created: 2026-02-23

Indicators

類似Pulses

このPulseに関連する脅威アクター (事実ベース)

FIN7

Score: 14.89
Matched TTPs:
  • T1011.001 - Exfiltration Over Bluetooth
  • T1588.001 - Malware
  • T1573 - Encrypted Channel
  • T1105 - Ingress Tool Transfer
  • T1490 - Inhibit System Recovery
MITREへのリンク →

APT29

Score: 8.56
Matched TTPs:
  • T1592.004 - Client Configurations
  • T1537 - Transfer Data to Cloud Account
  • T1490 - Inhibit System Recovery
MITREへのリンク →

APT32

Score: 14.02
Matched TTPs:
  • T1592.004 - Client Configurations
  • T1588.001 - Malware
  • T1027.014 - Polymorphic Code
  • T1105 - Ingress Tool Transfer
  • T1490 - Inhibit System Recovery
MITREへのリンク →

BRONZE BUTLER

Score: 3.84
Matched TTPs:
  • T1592.004 - Client Configurations
MITREへのリンク →

Kimsuky

Score: 19.37
Matched TTPs:
  • T1588.001 - Malware
  • T1552.003 - Shell History
  • T1027.014 - Polymorphic Code
  • T1537 - Transfer Data to Cloud Account
  • T1526 - Cloud Service Discovery
  • T1003.003 - NTDS
  • T1490 - Inhibit System Recovery
MITREへのリンク →

FIN13

Score: 11.82
Matched TTPs:
  • T1588.001 - Malware
  • T1552.003 - Shell History
  • T1053.006 - Systemd Timers
  • T1105 - Ingress Tool Transfer
MITREへのリンク →

Wizard Spider

Score: 8.87
Matched TTPs:
  • T1588.001 - Malware
  • T1556.009 - Conditional Access Policies
  • T1526 - Cloud Service Discovery
MITREへのリンク →

PROMETHIUM

Score: 4.76
Matched TTPs:
  • T1588.001 - Malware
  • T1490 - Inhibit System Recovery
MITREへのリンク →

ZIRCONIUM

Score: 4.15
Matched TTPs:
  • T1588.001 - Malware
  • T1537 - Transfer Data to Cloud Account
MITREへのリンク →

Lazarus Group

Score: 8.89
Matched TTPs:
  • T1588.001 - Malware
  • T1055.005 - Thread Local Storage
  • T1105 - Ingress Tool Transfer
MITREへのリンク →

Storm-0501

Score: 9.42
Matched TTPs:
  • T1588.001 - Malware
  • T1552.003 - Shell History
  • T1027.014 - Polymorphic Code
  • T1537 - Transfer Data to Cloud Account
MITREへのリンク →

APT41

Score: 7.08
Matched TTPs:
  • T1588.001 - Malware
  • T1573 - Encrypted Channel
  • T1537 - Transfer Data to Cloud Account
MITREへのリンク →

Scattered Spider

Score: 7.06
Matched TTPs:
  • T1552.003 - Shell History
  • T1027.002 - Software Packing
MITREへのリンク →

Medusa Group

Score: 9.11
Matched TTPs:
  • T1552.003 - Shell History
  • T1537 - Transfer Data to Cloud Account
  • T1094 - Custom Command and Control Protocol
MITREへのリンク →

Play

Score: 5.19
Matched TTPs:
  • T1552.003 - Shell History
  • T1490 - Inhibit System Recovery
MITREへのリンク →

Mustang Panda

Score: 14.49
Matched TTPs:
  • T1169 - Sudo
  • T1526 - Cloud Service Discovery
  • T1055.005 - Thread Local Storage
  • T1105 - Ingress Tool Transfer
MITREへのリンク →

Cobalt Group

Score: 5.67
Matched TTPs:
  • T1027.014 - Polymorphic Code
  • T1573 - Encrypted Channel
MITREへのリンク →

Threat Group-3390

Score: 8.13
Matched TTPs:
  • T1573 - Encrypted Channel
  • T1537 - Transfer Data to Cloud Account
  • T1526 - Cloud Service Discovery
MITREへのリンク →

SideCopy

Score: 4.13
Matched TTPs:
  • T1584.002 - DNS Server
MITREへのリンク →

Volt Typhoon

Score: 6.19
Matched TTPs:
  • T1584.002 - DNS Server
  • T1537 - Transfer Data to Cloud Account
MITREへのリンク →

OilRig

Score: 6.77
Matched TTPs:
  • T1556.009 - Conditional Access Policies
  • T1526 - Cloud Service Discovery
MITREへのリンク →

Stealth Falcon

Score: 3.62
Matched TTPs:
  • T1556.009 - Conditional Access Policies
MITREへのリンク →

Turla

Score: 6.29
Matched TTPs:
  • T1556.009 - Conditional Access Policies
  • T1490 - Inhibit System Recovery
MITREへのリンク →

Rocke

Score: 4.72
Matched TTPs:
  • T1537 - Transfer Data to Cloud Account
  • T1105 - Ingress Tool Transfer
MITREへのリンク →

Equation

Score: 4.13
Matched TTPs:
  • T1130 - Install Root Certificate
MITREへのリンク →

Strider

Score: 4.13
Matched TTPs:
  • T1130 - Install Root Certificate
MITREへのリンク →

BlackTech

Score: 3.15
Matched TTPs:
  • T1526 - Cloud Service Discovery
MITREへのリンク →

FIN8

Score: 3.15
Matched TTPs:
  • T1526 - Cloud Service Discovery
MITREへのリンク →

APT28

Score: 6.80
Matched TTPs:
  • T1105 - Ingress Tool Transfer
  • T1055.008 - Ptrace System Calls
MITREへのリンク →

Tropic Trooper

Score: 5.33
Matched TTPs:
  • T1105 - Ingress Tool Transfer
  • T1490 - Inhibit System Recovery
MITREへのリンク →

HAFNIUM

Score: 9.46
Matched TTPs:
  • T1105 - Ingress Tool Transfer
  • T1055.008 - Ptrace System Calls
  • T1490 - Inhibit System Recovery
MITREへのリンク →

Axiom

Score: 4.54
Matched TTPs:
  • T1160 - Launch Daemon
MITREへのリンク →

Ember Bear

Score: 4.13
Matched TTPs:
  • T1003.003 - NTDS
MITREへのリンク →

このPulseに関連する脅威アクター (推論ベース)

Kimsuky

Score: 0.78
Matched TTPs:
  • T1588.001 - Malware
  • T1003.003 - NTDS
  • T1027.014 - Polymorphic Code
  • T1526 - Cloud Service Discovery
  • T1552.003 - Shell History
  • T1537 - Transfer Data to Cloud Account
  • T1490 - Inhibit System Recovery
MITREへのリンク →

FIN7

Score: 0.71
Matched TTPs:
  • T1573 - Encrypted Channel
  • T1588.001 - Malware
  • T1105 - Ingress Tool Transfer
  • T1490 - Inhibit System Recovery
  • T1011.001 - Exfiltration Over Bluetooth
MITREへのリンク →

Mustang Panda

Score: 0.64
Matched TTPs:
  • T1105 - Ingress Tool Transfer
  • T1526 - Cloud Service Discovery
  • T1055.005 - Thread Local Storage
  • T1169 - Sudo
MITREへのリンク →

APT32

Score: 0.62
Matched TTPs:
  • T1588.001 - Malware
  • T1105 - Ingress Tool Transfer
  • T1027.014 - Polymorphic Code
  • T1592.004 - Client Configurations
  • T1490 - Inhibit System Recovery
MITREへのリンク →

FIN13

Score: 0.59
Matched TTPs:
  • T1105 - Ingress Tool Transfer
  • T1552.003 - Shell History
  • T1588.001 - Malware
  • T1053.006 - Systemd Timers
MITREへのリンク →

Related CVEs

このPulseに見つかったCVEはありません。

Pulse – 脅威アクター グラフ


← Pulse一覧に戻る