ISFB

GPTKB entity

Statements (32)
Predicate Object
gptkbp:instanceOf malware
gptkbp:abilities data exfiltration
web injection
keylogging
steal banking credentials
gptkbp:alsoKnownAs gptkb:Ursnif
Gozi ISFB
gptkbp:discoveredBy 2014
https://www.w3.org/2000/01/rdf-schema#label ISFB
gptkbp:notable_campaign targeted financial institutions
targeted Europe
targeted North America
gptkbp:notableFeature modular architecture
uses command and control servers
uses process injection
gptkbp:origin descendant of Gozi malware
gptkbp:programmingLanguage gptkb:C++
gptkbp:relatedTo gptkb:Gozi
gptkb:Ursnif
gptkbp:removes gptkb:security
malware removal tools
gptkbp:spreadTo exploit kits
malspam
gptkbp:status active (as of 2023)
gptkbp:target gptkb:Windows_operating_system
gptkbp:type malware
gptkbp:usedBy cybercriminals
gptkbp:usesMalware trojan
infostealer
gptkbp:bfsParent gptkb:Gozi
gptkb:Ursnif
gptkbp:bfsLayer 7