ZeuS Gets More Sophisticated Using P2P Techniques | abuse.ch | ICT Security-Sécurité PC et Internet | Scoop.it
Recently, I've seen some major modifications in ZeuS murofet/LICAT.

 

*** A new (custom) version of ZeuS ***

The new version of ZeuS is no longer using a DGA to determine the current C&C domain, therefore it’s also not possible to pre-calculate the C&C domains that will be used in the near future. Obviously, the criminals switched back to a hardcoded C&C domain which is stored in the ZeuS config file.