Gootloader malware gets updated with PowerShell and sneaky JavaScript code
The operators behind Gootloader, a crew dubbed UNC2565, have upgraded the code in cunning ways to make it more intrusive and harder to find.
"These changes are illustrative of UNC2565's active development and growth in capabilities," the researchers wrote in aA Gootloader infection starts via a search engine optimization poisoning attack, with a victim who is searching online for business-related documents, such as templates, agreements, or contracts, being lured into going to a website compromised by the criminal gang.
Three months ago, Mandiant researchers began seeing the Gootloader.PowerShell variant, which includes an infection chain that that writes a second JavaScript file to the system's disk that reaches out to 10 hard-coded URLs, with each request containing encoded data about the compromised system, such the versions of Windows it's using, processes running and filenames.Gootloader in the months since May 2021 has used three variants of FONELAUNCH – FONELAUNCH.FAX, FONELAUNCH.
Ireland Latest News, Ireland Headlines
Similar News:You can also read news stories similar to this one that we have collected from other news sources.
Why floor designs have become a key F1 battlegroundThe new ground effect floor design is perhaps one of the biggest changes that Formula 1 teams have had to adapt to under the new rules era.
Read more »
Why floor designs have become a key F1 battlegroundThe return of ground-effect has made floor designs a key battleground in F1. Here's how teams are trying to derive more and more performance from the floor and the underside of the car:
Read more »
Britney Spears confirms she's 'alive and well' after deleting InstagramBritney Spears confirms she's okay after quitting Instagram last week - and fans are relieved 💛
Read more »
How energy customers can check status of their £600 government paymentIf you don’t receive your payment, you are asked to wait until after February 28 to contact your supplier
Read more »
FaceTime will see you now: Govt plans video call check ups to create 'hospitals at home' in bid to solve NHS crisisPlans to save the crisis-stricken NHS would see more than half a million patients get treated remotely in 'hospitals at home'.
Read more »
Win a copy of Nobody Saves the World on Xbox - click here to enter!Click here for a chance to win a free copy of Nobody Saves the World. Check back tomorrow for a chance to win a different game!
Read more »