Neverquest is an online banking Trojan that steals login credentials from victims. Researchers have determined that Neverquest is part of the evolving threat family "Snifula," first seen in 2006. This Trojan provides attackers with control of the infected device through a Virtual Network Computing (VNC) server, making it appear that the malicious activity is actually coming from the victim’s computer, a method used to avoid detection. It steals credentials by modifying content on banking websites viewed through certain web browsers and injecting fraudulent forms into the banking websites.

