East European botnet targets Russian banks

Maria Korolov

According to the researchers, it comes with a domain generation algorithm, and RSA signature verification to confirm that it is communicating with the real command and control server, not a security researcher's sinkhole. It also comes with a variety of features that allow it to steal account credentials and one-time passwords.

