The GootKit banking Trojan is considered to be one of the more advanced banking Trojans active nowadays. It is developed and operated by a small Russian-speaking cyber gang who does not share or sell the source code to others. The malware keeps improving the anti-research techniques it uses to protect its internal secrets from prying researchs eyes. It affects the three most popular browsers: Internet Explorer, Mozilla Firefox and Google Chrome. The research results are brought to you in a dedicated paper you can download directly on IBM’s X-Force Exchange.”]
Source: https://securityintelligence.com/news/unraveling-gootkits-stealth-loader/