Trojan

ZLoader

First seen: 2016-01 • Status: active

Currently Active Threat

ZLoader evolved from the infamous Zeus banking malware. It steals credentials and delivers ransomware.

Overview

ZLoader is a banking trojan derived from Zeus that now delivers ransomware.

Also Known As

Terdot, DELoader

How It Spreads

  • Phishing emails
  • Malicious ads
  • Fake software

What It Does

  • Steals banking credentials
  • Web injection
  • Delivers ransomware

Is your business exposed?

Target Platforms

Windows

Detection Tips

  • Monitor for web injection
  • Detect code injection

MITRE ATT&CK Techniques

T1566, T1055, T1185

If You're Infected

  1. 1.

    Isolate infected systems

Related Malware

Zeus, Trickbot

Is your business exposed?

Check if your company data is circulating on the dark web

Free scan • No credit card required