An ideal Trojan should be easy to use, commercially available, and also very importantly very smart and have technical support. A new Trojan called “KINS” seems to meet all the requirements.
The first rumors about KINS came to light in February 2013, when many cybercriminals were desperately searching for the person who created it.
Recently, however, an advertisement for KINS on a forum located in Russia.
The creator of KINS claims that Trojan has been rewritten from scratch, and does not use code from any other known malware.
The basic version costs $5,000, and payments are only accepted via WebMoney. Those who want additional features, such as the Anti-Rapport plugin, will have to pay an additional $2,000.
Although the KINS developer claims that it is coded from scratch, the Trojan has many features that are also found in ZeuS and SpyEye.
For example, the architecture is similar to that of SpyEye and ZeuS, and is compatible with ZeuS web injections.
What is quite interesting about this malware is that it is designed to only work against users located outside the countries of the former Soviet Union. If it detects a system located in Russia or Ukraine, the Trojan stops working on its own. This feature may also indicate the origin of the developer, unless he wants us to believe exactly that.
The developer of KINS created it in such a way that it can infect devices running Windows 8 in both 86 and 64bit, installing a bootkit on them.
“All major malware developers choose to keep a low profile on the operations of their creations to avoid an imminent arrest by the authorities. The author of KINS, on the other hand, is very confident in his Trojan and signs its quality,” said Limor Kessem, an expert at RSA Cyber Intelligence.

