Blog

Persistent Banking Trojan Virus Launches New Phishing Scam

By Mersad • May 13, 2019

The venerable banking Trojan known as Q-bot is back in the news, having recently been spotted in the wild as part of a sophisticated new phishing campaign designed to claim a new generation of victims.

Q-bot is one of the oldest banking Trojans still in use, and has a history that stretches back more than a decade.


In this most recent incarnation, the malware is being delivered via an email which appears to be a reply to an existing email chain. The body of the email contains a poisoned link which, if clicked will install the malware in the background.


Once in place, it creates a backdoor to the compromised machine in question, allowing hackers access any time they like. It also serves as a key logger and general spy. It can steal financial data, banking data, other logins, credentials, and of course, makes it possible for the hackers to install additional malware as they see fit.


The reason Q-bot is still enjoying use of stolen data is that it's very good at what it does, and the developers of the code have taken steps to keep it up to date. This, combined with finding new and innovative ways of introducing the Trojan onto target systems has made it as close to a persistent threat as we've seen when it comes to malicious code.


The latest campaign appears to borrow from the success of a similar campaign launched last year involving a Trojan with comparable functionality called Emotet.


This serves as confirmation that different hacking groups around the world are learning from one another, comparing notes, and developing an increasingly robust set of best practices. All this makes it increasingly more difficult to effectively defend against such threats. Stay vigilant and be sure to remind your employees never to open emails or click links inside emails, even if they appear to be from a trusted source.


Used with permission from Article Aggregator

Related Posts

By BayPointe Technology • October 7, 2026
Learn what secure remote IT support requires, from trusted help requests and controlled access to device standards, session records, and onsite escalation.
By BayPointe Technology • September 30, 2026
Find out whether your business backups can support recovery. Plan restore tests, measure results, and address gaps before an outage disrupts work.
By BayPointe Technology • September 23, 2026
Help employees recognize phishing emails, verify unusual requests, and report concerns with a practical process for Northeast Ohio businesses.
Stressed man at desk with hand on face, holding glasses near a computer and moving boxes
By BayPointe Technology • September 16, 2026
Recurring IT issues, growing support demands, or unclear security responsibilities? Learn when your Northeast Ohio business should consider managed IT services.
Blue illuminated curved metal structure with repeating ribbed arches
By BayPointe Technology • September 9, 2026
Plan office-move IT tasks, including internet installation, cabling, phones, equipment, vendor coordination, and opening-day readiness checks.

Contact Information

1035 Medina Rd, Suite #800

Medina, OH 44256