Microsoft Spots 'Nodersok' Malware That Turns PCs Into Zombie Proxies

After infecting a PC, Nodersok can turn them into proxies for launching other cyber-attacks.

Advertisement
By Indo-Asian News Service | Updated: 30 September 2019 12:13 IST

Researchers at Microsoft have uncovered a new malware campaign that is infecting thousands computers across the world.

After infecting a PC, the malware, dubbed Nodersok, can turn them into proxies for launching other cyber attacks.

"The majority of targets are consumers, but about 3 per cent of encounters are observed in organisations in sectors like education, professional services, healthcare, finance, and retail," Microsoft Defender Advanced Threat Protection (ATP) Research team said.

Advertisement

"The campaign is particularly interesting not only because it employs advanced fileless techniques, but also because it relies on an elusive network infrastructure that causes the attack to fly under the radar," the researchers wrote.

Advertisement

The attack begins when a user downloads and runs an HTML application (HTA) file named Player1566444384.hta.

The digits in the file name differ in every attack.

Advertisement

Analysis of Microsoft Defender ATP telemetry pointed to compromised advertisements as the most likely infection vector for delivering the HTA files.

Executing those files kickstart a process that opens up Powershell scripts, Excel and JavaScript to end up downloading and installing the Nodersok malware, The Inquirer reported.

Affiliate links may be automatically generated - see our ethics statement for details.
 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: Microsoft, Nodersok
Advertisement

Related Stories

Popular Mobile Brands
  1. Motorola Edge 70 Ultra Camera Configuration, Other Key Features Leaked
  2. Dominic and the Ladies' Purse OTT Release Date: When and Where to Watch it Online?
  3. Hogwarts Legacy Is Currently Free on Epic Games Store: How to Redeem
  1. Astronomers Observe Star’s Wobbling Orbit, Confirming Einstein’s Frame-Dragging
  2. Galaxy Collisions Found to Activate Supermassive Black Holes, Euclid Data Shows
  3. JWST Detects Oldest Supernova Ever Seen, Linked to GRB 250314A
  4. Chandra’s New X-Ray Mapping Exposes the Invisible Engines Powering Galaxy Clusters
  5. Blue Origin to Fly First Wheelchair User to Space on New Shepard NS-37
  6. Chandra’s New X-Ray Mapping Exposes the Invisible Engines Powering Galaxy Clusters
  7. Sasivadane Now Streaming on Amazon Prime Video: Everything You Need to Know
  8. Kuttram Purindhavan Now Streaming Online: What You Need to Know?
  9. Lyne Lancer 19 Pro With 2.01-Inch Display, SpO2 Monitoring Launched in India
  10. OpenAI and Disney Reach Licensing Agreement to Bring Its Characters to the Sora App
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.