Spidey Bot Transmutes Windows Discord Client Into Backdoor - SOC Prime (2024)

Spidey Bot Transmutes Windows Discord Client Into Backdoor - SOC Prime (1)

  • October 24, 2019

Delaware, USA – October 24, 2019 – The new malware is supposedly spreading through Discord, and simply removing the malicious file is not enough to clean the system. Spidey Bot was discovered by MalwareHunterTeam, the malware modifies the Windows Discord client transmuting it into an infostealer with backdoor capabilities. This is possible because the Discord team used electron framework for the desktop app that leverages web technologies: JavaScript, HTML, and CSS. Spidey Bot changes the app’s core files adding malicious script and restarts the Discord to apply changes and run new scripts. The infected application collects info about the system, Discord, browsers, and the first 50 characters of the clipboard and transmits it to adversaries. After that, Discord starts working as a backdoor: it uses fightdio() function to get further instructions, so attackers can run commands on the infected system and drop the next stage malware. Since Discord functions are used to perform malicious actions, the victim does not suspect an attack and deleting a file that infected the system will give nothing but a sense of false security.

Discord is a freeware app designed for the video gaming community and used by over 250 million users. It is still unknown who is behind Spidey Bot and for what purpose it infects Discord users. Recently, gamers have attracted the attention of APT groups and become victims of cybercriminals. Having gained access to the home system, attackers can collect the necessary information and credentials to compromise the corporate network, or at least install a cryptocurrency miner if the system is not of interest. You can detect signs of abuse or unauthorized access to the VPN service and enable real-time tracking of VPN connections with your SIEM and content available on Threat Detection Marketplace: https://my.socprime.com/en/integrations/vpn-security-monitor

Spidey Bot Transmutes Windows Discord Client Into Backdoor - SOC Prime (2024)

FAQs

What does Spidey bot do on Discord? ›

The Discord bot "Spidey" is a comprehensive tool that adds a variety of powerful features to your server. With its user-friendly interface and intuitive commands, Spidey simplifies server management while ensuring smooth communication. One of Spidey's standout features is its warning system.

How does the Discord bot tatsu work? ›

How does it work? When a member sends a message, Tatsu will award them global XP and server score. Tweak your server score system to your liking by changing the name, emoji, rate of earning and score range.

Is the spidey bot safe? ›

Spidey Bot is one of the most common types of malware that corrupts the Discord app file. One way to check whether you have it is by opening the %AppData%\Discord\[version]\modules\discord_modules\index.

Can Discord bots spy? ›

It can't do that without the ability to read messages on the server [1], which Discord has “limited” now in a way that only gives the illusion of privacy: a bot cannot read messages on a server if the server has more than 500 users, or if the bot is in more than 50 servers.

Can tatsu bot delete messages? ›

The prune command can be used to delete large numbers of messages at once. Tatsu can prune up to 100 messages at a time, and will automatically skip pinned messages.

How do you make money from Discord bots? ›

There are several ways to monetize your Discord bot. The most common method is through user subscriptions. By offering users access to special features or content in exchange for a monthly fee, you can generate ongoing revenue from your bot without having to create new content each month.

Is there a ChatGPT Discord bot? ›

KrozT / openai-discord

OpenAI Discord is a AI-powered bot for Discord that leverages the OpenAI API. It enables users to interact with ChatGPT and DALL-E in a natural and efficient manner.

What are spider bots used for? ›

A web crawler, or spider, is a type of bot that is typically operated by search engines like Google and Bing. Their purpose is to index the content of websites all across the Internet so that those websites can appear in search engine results.

What is Spidey bots name? ›

The Spider-Bots are built the same and look alike, a rounded body with big eyes and eight legs. But each robot has a different color scheme that represents their owners. TRACE-E is red and blue (Spidey), TWIST-E is black and red (Spin), and TWIRL-E is white, pink, and bright blue (Ghost-Spider).

What do bots do in Discord? ›

Bots on Discord, the group messaging platform, are helpful artificial intelligence that can perform several useful tasks on your server automatically. That includes welcoming any new members, banning troublemakers, and moderating the discussion. Some bots even add music or games to your server.

How do people get hacked on Discord? ›

You might have even clicked a link sent by a friend, not knowing that they were hacked before you. Hackers often spread Discord malware through phishing – impersonating others to gain the victim's trust. Scan your drive with antivirus software, just in case.

Top Articles
Jak mogę znaleźć mój TXID dla zamówienia? | Centrum pomocy Easy Crypto
Kod CVV: wszystko, co musisz wiedzieć o tej funkcji bezpieczeństwa.
Dainty Rascal Io
Design215 Word Pattern Finder
Skamania Lodge Groupon
Napa Autocare Locator
Missing 2023 Showtimes Near Cinemark West Springfield 15 And Xd
Nfr Daysheet
Black Gelato Strain Allbud
Nordstrom Rack Glendale Photos
Www Craigslist Louisville
House Party 2023 Showtimes Near Marcus North Shore Cinema
Urban Dictionary: hungolomghononoloughongous
Toy Story 3 Animation Screencaps
Sni 35 Wiring Diagram
X-Chromosom: Aufbau und Funktion
Gayla Glenn Harris County Texas Update
Exl8000 Generator Battery
Project Reeducation Gamcore
Inkwell, pen rests and nib boxes made of pewter, glass and porcelain.
Victory for Belron® company Carglass® Germany and ATU as European Court of Justice defends a fair and level playing field in the automotive aftermarket
Pensacola Tattoo Studio 2 Reviews
Pixel Combat Unblocked
Phoenixdabarbie
Weather Underground Durham
Town South Swim Club
Experity Installer
Ezstub Cross Country
Kattis-Solutions
Chase Bank Cerca De Mí
The Mad Merchant Wow
Honda Ruckus Fuse Box Diagram
Craigs List Jonesboro Ar
Today's Gas Price At Buc-Ee's
Pokemon Reborn Locations
Mixer grinder buying guide: Everything you need to know before choosing between a traditional and bullet mixer grinder
Ashoke K Maitra. Adviser to CMD's. Received Lifetime Achievement Award in HRD on LinkedIn: #hr #hrd #coaching #mentoring #career #jobs #mba #mbafreshers #sales…
Cnp Tx Venmo
Hazel Moore Boobpedia
Sallisaw Bin Store
Brauche Hilfe bei AzBilliards - Billard-Aktuell.de
RubberDucks Front Office
Theater X Orange Heights Florida
Is TinyZone TV Safe?
Service Changes and Self-Service Options
Karen Kripas Obituary
San Pedro Sula To Miami Google Flights
Island Vibes Cafe Exeter Nh
Les BABAS EXOTIQUES façon Amaury Guichon
Latest Posts
Article information

Author: Allyn Kozey

Last Updated:

Views: 6205

Rating: 4.2 / 5 (63 voted)

Reviews: 94% of readers found this page helpful

Author information

Name: Allyn Kozey

Birthday: 1993-12-21

Address: Suite 454 40343 Larson Union, Port Melia, TX 16164

Phone: +2456904400762

Job: Investor Administrator

Hobby: Sketching, Puzzles, Pet, Mountaineering, Skydiving, Dowsing, Sports

Introduction: My name is Allyn Kozey, I am a outstanding, colorful, adventurous, encouraging, zealous, tender, helpful person who loves writing and wants to share my knowledge and understanding with you.