New Windows Malware Installs Proxies to Hide Malicious Network Traffic: Proofpoint

The SystemBC malware was first discovered in action in May this year.

Advertisement
By Gaurav Shukla | Updated: 2 August 2019 18:31 IST
Highlights
  • SystemBC-created proxies are used to hide malicious traffic
  • It is being advertised on underground cybercrime forums
  • Proxies make it harder to detect it using network edge detection
New Windows Malware Installs Proxies to Hide Malicious Network Traffic: Proofpoint

SystemBC is written in C++ and is being distributed as a part of exploit kits

New malware targeting Windows machines has been discovered. Dubbed as SystemBC, the malware installs SOCKS5 proxies on the infected machines and uses it to push a second piece of malware. According to researchers, the new malware is being advertised by the authors on underground cybercrime forums. It is also being distributed as a part of Fallout and RIG exploit kits. Exploit kits (EK) are Web-based systems that use browser-based vulnerabilities to install malware or send users to malicious webpages that trick them into installing malware.

“SystemBC is a previously undocumented malware that we have recently observed as a payload in both RIG and Fallout exploit kit (EK) campaigns,” researchers at Proofpoint wrote in a blog post. While EK activity has remained quite low relative to its peak in early 2016, they remain important vectors for malware distribution, particularly in regions where Windows piracy is common.

According to a report by ZDNet, SystemBC is essentially an on-demand proxy component for malware operators, which they can deploy on compromised systems to hide malicious traffic.

“SystemBC's main role is to create a SOCKS5 proxy server through which the other malware can create a tunnel to bypass local firewalls, skirt internet content filters, or connect to its command-and-control server without revealing its real IP address,” writes ZDNet.

Advertisement

The malware was first spotted online in May; however, its creators have been advertising it since April.

Proofpoint researchers believe that the presence of the malicious proxy created by SystemBC malware will make it harder to detect using network edge detection. It recommends organisations to patch their systems with latest updates and avoid using older systems that use browser plugins susceptible to malware attacks and exploit kits.

 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Further reading: SystemBC, SOCKS5 proxy, Windows
Advertisement
Popular Mobile Brands
  1. Vivo Y400 Pro 5G India Launch Today: All You Need to Know
  2. Oppo Reno 14 5G Series Teased to Launch in India Soon
  3. OTT Releases This Week: Ground Zero, Detective Sherdil, Found S2, and More
  4. YouTube Shorts Will Soon Let You Create AI Video Clips With Veo 3 Model
  5. Nothing Phone 3 to Get New Glyph Matrix Interface on the Rear Panel
  6. Samsung Galaxy M36 5G India Launch Date and Key Features Revealed
  7. Vodafone Idea to Bring Direct-to-Device Satellite Connectivity to India
  8. Need A Smartphone With 12 GB RAM Under 30,000 Rupees? Check out This List
  1. Samsung Galaxy Z Flip 7 Leaked Renders Suggest Edge-to-Edge Cover Display
  2. YouTube Shorts to Bring Google’s Veo 3 Video Generation Model With Audio Support 'This Summer'
  3. Samsung Galaxy Z Fold 7 Leaked Renders Hint at Design Changes; Storage Options Tipped
  4. Vivo Y400 Pro 5G Launching Today: Price in India, Expected Features and Specifications
  5. Fast Radio Bursts Reveal Universe’s Missing Matter Hidden in Cosmic Intergalactic Fog
  6. Apollo Astronauts Found Orange Glass Beads on the Moon, Scientists Now Know Why
  7. World’s Oldest Tailored Dress Found in Egyptian Tomb Dates Back Over 5,000 Years
  8. Ancient Footprints in White Sands Confirm Humans Reached America 23,000 Years Ago
  9. Humanoid Robot Achieves Controlled Flight Using Jet Propulsion and AI Systems
  10. Curiosity Rover Reaches Uyuni Quad, Begins New Mars Mapping and Surface Analysis Campaign
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.