HomeSoftwareIT SecurityMalicious code: Talos experts warn against RAM-based network

Malicious code: Talos experts warn against RAM-based network

Published on

The malware itself is listed as Divergent. On the users’ computers, the malicious code came through corresponding scripts, which were either integrated into websites via advertising networks or insecure backends. The code itself will then nest in the main memory and avoid writing files to the hard disk or SSD – because this would mean that existing virus scanners would quickly become aware of the unexpected activities. Instead, the malicious code gets out of RAM and loads various components from here as well.

These include, among others, the Node.js framework, which makes it possible to get javascript scripts running outside of the browser. The malware also relies on WinDivert, an open source tool for intercepting and modifying data packets in networks. Reloaded components then ensure, among other things, that active virus scanners are switched off as far as possible, before eventually writing something into the file system.

Always up to date

The malware modules on the computer then ensure that the computer can serve as a proxy system for various tasks, which then bring the operators money. Among other things, they perform click fraud. However, other activities may already have taken place – after all, traces of malware can be traced back to last February.

Accordingly, it is not a big disadvantage for the operator that the malicious code after switching off the computer is no longer available – because it ensures that basically only current variants are used, which always do the tasks currently pending and not one Pursue employment that has long since stopped contributing. The analysis by the security experts now makes it possible to insert suitable signatures into the AV databases – but it should soon come to the distribution of new versions that are no longer recognized directly.

Via | Divergent

Latest articles

‘Strong Evidence’: Low on This Vitamin Can Cut Several Years Off Life

The crucial vitamin for life and “the take-home message here is simple – the...

Goodbye to Gym? This Pill Mimics the Benefits of Exercise – Says New Study

Doctors have recommended exercise for years as a way to improve and maintain health....

Are Vitamin D Supplements a Placebo? Study Suggests Limited Benefits for Common Health Issues

Are You Wasting Money on Vitamin D Supplements? New Findings Challenge Widely Held Beliefs...

Expert Reveals ‘a Real Surprise Drink’ that You Thought ‘HEALTHY’ May Be Making Your Skin Older

It may be one of the primary causes of premature ageing, according to the...

More like this

‘Strong Evidence’: Low on This Vitamin Can Cut Several Years Off Life

The crucial vitamin for life and “the take-home message here is simple – the...

Goodbye to Gym? This Pill Mimics the Benefits of Exercise – Says New Study

Doctors have recommended exercise for years as a way to improve and maintain health....

Are Vitamin D Supplements a Placebo? Study Suggests Limited Benefits for Common Health Issues

Are You Wasting Money on Vitamin D Supplements? New Findings Challenge Widely Held Beliefs...