Malware Author Uses Tweets to Control His Lame DDoS Botnet

  • 20 April 2017
  • 0 replies
  • 237 views

Userlevel 7
Badge +54
20th April 2017 By Catalin Cimpanu
 
A Russian malware author is using codified tweets to start and stop DDoS attacks against desired targets.
The DDoS attacks are launched from the computers of infected users using a peculiar piece of malware, which the attacker is spreading via a booby-trapped file named "driversUpdate.exe."
 

New DDoS bot controlled using tweets

 
According to a technical analysis provided by MalwareHunter to Bleeping Computer, this new DDoS bot works by querying a Twitter account hard-coded in the malware's source code, at a predetermined time interval.
 
Once the malware detects a new tweet, it acts on the command it discovers there. The malware supports the following commands:
 
Full Article

0 replies

Be the first to reply!

Reply