Threat Database Backdoors BKDR_SIMBOT.ZTBD-PB

BKDR_SIMBOT.ZTBD-PB

By GoldSparrow in Backdoors

Threat Scorecard

Threat Level: 80 % (High)
Infected Computers: 3
First Seen: May 13, 2014
Last Seen: October 14, 2022
OS(es) Affected: Windows

BKDR_SIMBOT.ZTBD-PB is a backdoor Trojan that is involved in a malicious attack against government agencies that depends on emails encompassing infectious attachments. BKDR_SIMBOT.ZTBD-PB is related to the targeted attacks regarding a remote code execution vulnerability in Word, that was being leveraged by attackers. The Word vulnerability has been leveraged in targeted attacks against government agencies and an educational institution in Taiwan. The emails are allegedly sent by a government employee. The operation against the educational institution is based on an email discussing free-trade issues. The file added into the infectious emails is created to download a backdoor Trojan, found as BKDR_SIMBOT.ZTBD-PB, which permits attackers to steal sensitive files from the attacked organization.

Trending

Most Viewed

Loading...