Over the past two years development of malware programs for RBS systems turned from fate of several cyber-criminal groups to mass thread for Russian banks clients. Malefactors profits exceed all conceivable borders, one controller of bank botnet can bring millions in profit to his employer. Only this year amount of incidents in RBS systems has doubled. The aim of this report is to tell about vulnerabilities in remote payment systems, and more precisely how they are used by malefactors in the most widespread Trojan programs, aimed at Russian banks. In addition questions of security software bypass and methods of counteraction to criminal expertise, used in modern bank Trojans, will be raised.