Spidey Bot Transmutes Windows Discord Client Into Backdoor - SOC Prime (2024)

Spidey Bot Transmutes Windows Discord Client Into Backdoor - SOC Prime (1)

  • October 24, 2019

Delaware, USA – October 24, 2019 – The new malware is supposedly spreading through Discord, and simply removing the malicious file is not enough to clean the system. Spidey Bot was discovered by MalwareHunterTeam, the malware modifies the Windows Discord client transmuting it into an infostealer with backdoor capabilities. This is possible because the Discord team used electron framework for the desktop app that leverages web technologies: JavaScript, HTML, and CSS. Spidey Bot changes the app’s core files adding malicious script and restarts the Discord to apply changes and run new scripts. The infected application collects info about the system, Discord, browsers, and the first 50 characters of the clipboard and transmits it to adversaries. After that, Discord starts working as a backdoor: it uses fightdio() function to get further instructions, so attackers can run commands on the infected system and drop the next stage malware. Since Discord functions are used to perform malicious actions, the victim does not suspect an attack and deleting a file that infected the system will give nothing but a sense of false security.

Discord is a freeware app designed for the video gaming community and used by over 250 million users. It is still unknown who is behind Spidey Bot and for what purpose it infects Discord users. Recently, gamers have attracted the attention of APT groups and become victims of cybercriminals. Having gained access to the home system, attackers can collect the necessary information and credentials to compromise the corporate network, or at least install a cryptocurrency miner if the system is not of interest. You can detect signs of abuse or unauthorized access to the VPN service and enable real-time tracking of VPN connections with your SIEM and content available on Threat Detection Marketplace: https://my.socprime.com/en/integrations/vpn-security-monitor

Spidey Bot Transmutes Windows Discord Client Into Backdoor - SOC Prime (2024)

FAQs

What does Spidey bot do on Discord? ›

The Discord bot "Spidey" is a comprehensive tool that adds a variety of powerful features to your server. With its user-friendly interface and intuitive commands, Spidey simplifies server management while ensuring smooth communication. One of Spidey's standout features is its warning system.

How does the Discord bot tatsu work? ›

How does it work? When a member sends a message, Tatsu will award them global XP and server score. Tweak your server score system to your liking by changing the name, emoji, rate of earning and score range.

Is the spidey bot safe? ›

Spidey Bot is one of the most common types of malware that corrupts the Discord app file. One way to check whether you have it is by opening the %AppData%\Discord\[version]\modules\discord_modules\index.

Can Discord bots spy? ›

It can't do that without the ability to read messages on the server [1], which Discord has “limited” now in a way that only gives the illusion of privacy: a bot cannot read messages on a server if the server has more than 500 users, or if the bot is in more than 50 servers.

Can tatsu bot delete messages? ›

The prune command can be used to delete large numbers of messages at once. Tatsu can prune up to 100 messages at a time, and will automatically skip pinned messages.

How do you make money from Discord bots? ›

There are several ways to monetize your Discord bot. The most common method is through user subscriptions. By offering users access to special features or content in exchange for a monthly fee, you can generate ongoing revenue from your bot without having to create new content each month.

Is there a ChatGPT Discord bot? ›

KrozT / openai-discord

OpenAI Discord is a AI-powered bot for Discord that leverages the OpenAI API. It enables users to interact with ChatGPT and DALL-E in a natural and efficient manner.

What are spider bots used for? ›

A web crawler, or spider, is a type of bot that is typically operated by search engines like Google and Bing. Their purpose is to index the content of websites all across the Internet so that those websites can appear in search engine results.

What is Spidey bots name? ›

The Spider-Bots are built the same and look alike, a rounded body with big eyes and eight legs. But each robot has a different color scheme that represents their owners. TRACE-E is red and blue (Spidey), TWIST-E is black and red (Spin), and TWIRL-E is white, pink, and bright blue (Ghost-Spider).

What do bots do in Discord? ›

Bots on Discord, the group messaging platform, are helpful artificial intelligence that can perform several useful tasks on your server automatically. That includes welcoming any new members, banning troublemakers, and moderating the discussion. Some bots even add music or games to your server.

How do people get hacked on Discord? ›

You might have even clicked a link sent by a friend, not knowing that they were hacked before you. Hackers often spread Discord malware through phishing – impersonating others to gain the victim's trust. Scan your drive with antivirus software, just in case.

Top Articles
Exclamation Mark - Meaning, Definition, Uses and Examples
08 Kinh nghiệm đầu tư chứng chỉ quỹ dành cho nhà đầu tư F0
Tiny Tina Deadshot Build
Weeminuche Smoke Signal
South Park Season 26 Kisscartoon
Palace Pizza Joplin
Call of Duty: NEXT Event Intel, How to Watch, and Tune In Rewards
Valentina Gonzalez Leaked Videos And Images - EroThots
Select Truck Greensboro
Robot or human?
Raid Guides - Hardstuck
Purple Crip Strain Leafly
Washington, D.C. - Capital, Founding, Monumental
Current Time In Maryland
800-695-2780
Viprow Golf
9044906381
Nail Salon Goodman Plaza
Missed Connections Dayton Ohio
Huntersville Town Billboards
FDA Approves Arcutis’ ZORYVE® (roflumilast) Topical Foam, 0.3% for the Treatment of Seborrheic Dermatitis in Individuals Aged 9 Years and Older - Arcutis Biotherapeutics
Skip The Games Fairbanks Alaska
Craigslist Battle Ground Washington
The Listings Project New York
25 Best Things to Do in Palermo, Sicily (Italy)
Kimoriiii Fansly
Webworx Call Management
Times Narcos Lied To You About What Really Happened - Grunge
Jackass Golf Cart Gif
Miller Plonka Obituaries
Darknet Opsec Bible 2022
Isablove
Beaver Saddle Ark
Buhsd Studentvue
20+ Best Things To Do In Oceanside California
Craigslist Tulsa Ok Farm And Garden
888-822-3743
5A Division 1 Playoff Bracket
Sig Mlok Bayonet Mount
Charli D'amelio Bj
Silicone Spray Advance Auto
Woody Folsom Overflow Inventory
What Is The Optavia Diet—And How Does It Work?
Conan Exiles Tiger Cub Best Food
Rovert Wrestling
Runescape Death Guard
Joe Bartosik Ms
Mike De Beer Twitter
OSF OnCall Urgent Care treats minor illnesses and injuries
Selly Medaline
What Are Routing Numbers And How Do You Find Them? | MoneyTransfers.com
Latest Posts
Article information

Author: Allyn Kozey

Last Updated:

Views: 6205

Rating: 4.2 / 5 (63 voted)

Reviews: 94% of readers found this page helpful

Author information

Name: Allyn Kozey

Birthday: 1993-12-21

Address: Suite 454 40343 Larson Union, Port Melia, TX 16164

Phone: +2456904400762

Job: Investor Administrator

Hobby: Sketching, Puzzles, Pet, Mountaineering, Skydiving, Dowsing, Sports

Introduction: My name is Allyn Kozey, I am a outstanding, colorful, adventurous, encouraging, zealous, tender, helpful person who loves writing and wants to share my knowledge and understanding with you.