VB Blog

Paper: API-EPO

Posted by   Virus Bulletin on   Jul 14, 2014

Raul Alvarez studies the unique EPO methodology used by the W32/Daum file infector.

Read more  

Paper: Not old enough to be forgotten: the new chic of Visual Basic 6

Posted by   Virus Bulletin on   Jul 10, 2014

Marion Marschalek looks at two Miuref binaries: one packed with Visual Basic 6 and one with C++.

Read more  

Paper: VBA is not dead!

Posted by   Virus Bulletin on   Jul 7, 2014

Gabor Szappanos looks at the resurgence of malicious VBA macros that use social engineering to activate.

Read more  

'Cyber attack on hedge fund' turns out to be internal 'scenario' used by BAE Systems

Posted by   Virus Bulletin on   Jul 3, 2014

Story that appeared to be taken from fiction turns out... to have been fiction.

Read more  

Paper: Obfuscation in Android malware, and how to fight back

Posted by   Virus Bulletin on   Jul 2, 2014

Axelle Apvrille and Ruchna Nigam look at both off-the-shelf products and custom obfuscation techniques.

Read more  

Virus Bulletin celebrates 25th birthday by making all content free

Posted by   Virus Bulletin on   Jul 1, 2014

Neither subscription nor registration required to access content.

Read more  

Exploit kit requires link to be clicked before redirection

Posted by   Virus Bulletin on   Jun 23, 2014

Automatic analysis of malicious payloads becomes a little bit harder again.

Read more  

Cheap Android phone comes shipped with spyware

Posted by   Virus Bulletin on   Jun 19, 2014

Trojan masquerades as Google Play app; cannot be removed.

Read more  

Virus Bulletin seeks security researchers

Posted by   Virus Bulletin on   Jun 17, 2014

Would you like to publish your research through Virus Bulletin - or perhaps even work for us?

Read more  

Game over for GameOver Zeus botnet?

Posted by   Virus Bulletin on   Jun 5, 2014

Coordinated effort against gang that's also behind CryptoLocker ransomware.

Read more  

Search blog

VB2016 paper: Modern attacks on Russian financial institutions

Today, we publish the VB2016 paper and presentation (recording) by ESET researchers Jean-Ian Boutin and Anton Cherepanov, in which they look at sophisticated attacks against Russian financial institutions.
Today, we publish the VB2016 paper "Modern attacks on Russian financial institutions" (here in HTML format and here in PDF format) by ESET researchers Jean-Ian Boutin and Anton… https://www.virusbulletin.com/blog/2016/december/vb2016-paper-modern-attacks-russian-financial-institutions/

Grum botnet's command-and-control servers shut down

Spam-sending botnet believed to be third largest in the world.
Spam-sending botnet believed to be third largest in the world. International co-operation between a number of parties has led to all command-and-control servers of the 'Grum'… https://www.virusbulletin.com/blog/2012/07/grum-botnet-s-command-and-control-servers-shut-down/

Cybercriminals frustrated with botnet trackers

Drastic measures discussed by users of online forum.
Drastic measures discussed by users of online forum. Russian cybercriminals are willing to go to great lengths to frustrate services that hinder botnets created with the ZeuS and… https://www.virusbulletin.com/blog/2011/03/cybercriminals-frustrated-botnet-trackers/

Spammers move from China to Russia

Stricter rules on registering .cn domains leads to increase in malicious .ru domains.
Stricter rules on registering .cn domains leads to increase in malicious .ru domains. A change in the rules of the organization responsible for registering .cn domains has resulted… https://www.virusbulletin.com/blog/2010/02/spammers-move-china-russia/

Russian Business Network leaves Russia

Leading cybercrime hosting hub moves business to fresh pastures.
Leading cybercrime hosting hub moves business to fresh pastures. The notorious Russian Business Network (RBN), recently making headlines for the massive amounts of malicious and… https://www.virusbulletin.com/blog/2007/11/russian-business-network-leaves-russia/

St. Petersburg US Consulate website hacked

Malware served by official government site.
Malware served by official government site. Web-watchers at Sophos have reported spotting malware hosted on the website of the US Consulate in St. Petersburg, using obfuscated… https://www.virusbulletin.com/blog/2007/09/st-petersburg-us-consulate-website-hacked/

Estonian websites suffer wave of DoS attacks

Baltic republic accuses Russia of cyber-warfare.
Baltic republic accuses Russia of cyber-warfare. A wave of denial of service (DoS) attacks on Estonian websites has prompted the Estonian government to accuse its neighbour of… https://www.virusbulletin.com/blog/2007/05/estonian-websites-suffer-wave-dos-attacks/

DoS attacks support political unrest

Estonia rioting backed up by attacks on government websites.
Estonia rioting backed up by attacks on government websites. Severe rioting in Estonia, sparked by anger over the removal of a Russian monument from a prominent war memorial, has… https://www.virusbulletin.com/blog/2007/05/dos-attacks-support-political-unrest/

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.