{"id":4041,"date":"2022-01-31T15:00:58","date_gmt":"2022-01-31T15:00:58","guid":{"rendered":"https:\/\/www.maisetechnology.com\/?p=4041"},"modified":"2023-01-18T21:24:20","modified_gmt":"2023-01-18T21:24:20","slug":"new-malware-can-infect-linux-mac-or-windows-users","status":"publish","type":"post","link":"https:\/\/www.maisetechnology.com\/2022\/01\/31\/new-malware-can-infect-linux-mac-or-windows-users\/","title":{"rendered":"New Malware Can Infect Linux, Mac, Or Windows Users"},"content":{"rendered":"

[vc_row][vc_column][vc_column_text]\"NewThere’s a new strain of malware called SysJoker to be mindful of. It’s especially dangerous because it can target Windows, Mac or Linux systems. That makes it an equal opportunity strain.<\/p>\n

Researchers at Intezer are credited with discovering the malware in the wild in December of 2021 during an investigation of an attack on a Linux server. The group was able to obtain samples of the virus for analysis and have concluded that SysJoker is a nasty piece of work indeed.<\/p>\n

Written in C++, the malware strain is cunningly constructed to evade detection on all three Operating Systems. In fact, it’s so good at evading detection that none of the 57 antivirus programs the Intezer researchers tested were able to detect the presence of the malware.<\/p>\n

SysJoker is harmless by itself but that is by design. It is a first-stage dropper and its only job is to gain a foothold in a target network.<\/p>\n

Once there it will sleep for two minutes before creating a new directory and then copy itself to that directory all while disguised as an Intel Graphics Common User Interface Service (“igfxCUIService.exe”).<\/p>\n

According to the Intezer report, this is what happens next:<\/p>\n

“…SysJoker will gather information about the machine using Living off the Land (LOtL) commands. SysJoker uses different temporary text files to log the results of the commands,” explains Intezer’s report.<\/p>\n

These text files are deleted immediately, stored in a JSON object and then encoded and written to a file named “microsoft_Windows.dll”.”<\/p>\n

When that is done, the malware creates persistence by adding a new registry key (HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun). Random sleep times are interposed between all functions leading to this point.<\/p>\n

Finally, it will reach out to the actor-controlled command and control server using a hardcoded Google Drive link. Once that connection has been established, the hackers can install whatever payload they wish onto the infected system.<\/p>\n

None of the major AV programs can detect SysJoker at present. Given that it can infect Windows, Mac and Linux systems, this is one to keep a watchful eye out for.[\/vc_column_text][\/vc_column][\/vc_row]<\/p>\n<\/div>","protected":false},"excerpt":{"rendered":"

[vc_row][vc_column][vc_column_text]There’s a new strain of malware called SysJoker to be mindful of. It’s especially dangerous because it can target Windows, Mac or Linux systems. That makes it an equal opportunity strain. Researchers at Intezer are credited with discovering the malware in the wild in December of 2021 during an investigation of an attack on a…<\/p>\n","protected":false},"author":2,"featured_media":4042,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[11],"tags":[21,63,162,270,37,14,18,17,22],"yoast_head":"\nNew Malware Can Infect Linux, Mac, Or Windows Users | Maise Technology<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.maisetechnology.com\/2022\/01\/31\/new-malware-can-infect-linux-mac-or-windows-users\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"New Malware Can Infect Linux, Mac, Or Windows Users | Maise Technology\" \/>\n<meta property=\"og:description\" content=\"[vc_row][vc_column][vc_column_text]There’s a new strain of malware called SysJoker to be mindful of. It’s especially dangerous because it can target Windows, Mac or Linux systems. That makes it an equal opportunity strain. Researchers at Intezer are credited with discovering the malware in the wild in December of 2021 during an investigation of an attack on a…\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.maisetechnology.com\/2022\/01\/31\/new-malware-can-infect-linux-mac-or-windows-users\/\" \/>\n<meta property=\"og:site_name\" content=\"Maise Technology\" \/>\n<meta property=\"article:published_time\" content=\"2022-01-31T15:00:58+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2023-01-18T21:24:20+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.maisetechnology.com\/wp-content\/uploads\/2023\/01\/malware-resized-1-1.png\" \/>\n\t<meta property=\"og:image:width\" content=\"300\" \/>\n\t<meta property=\"og:image:height\" content=\"225\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"maisegroup\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"maisegroup\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.maisetechnology.com\/2022\/01\/31\/new-malware-can-infect-linux-mac-or-windows-users\/\",\"url\":\"https:\/\/www.maisetechnology.com\/2022\/01\/31\/new-malware-can-infect-linux-mac-or-windows-users\/\",\"name\":\"New Malware Can Infect Linux, Mac, Or Windows Users | Maise Technology\",\"isPartOf\":{\"@id\":\"https:\/\/www.maisetechnology.com\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/www.maisetechnology.com\/2022\/01\/31\/new-malware-can-infect-linux-mac-or-windows-users\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/www.maisetechnology.com\/2022\/01\/31\/new-malware-can-infect-linux-mac-or-windows-users\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/www.maisetechnology.com\/wp-content\/uploads\/2023\/01\/malware-resized-1-1.png\",\"datePublished\":\"2022-01-31T15:00:58+00:00\",\"dateModified\":\"2023-01-18T21:24:20+00:00\",\"author\":{\"@id\":\"https:\/\/www.maisetechnology.com\/#\/schema\/person\/eb4c832909343bad9b29835cbde276a5\"},\"breadcrumb\":{\"@id\":\"https:\/\/www.maisetechnology.com\/2022\/01\/31\/new-malware-can-infect-linux-mac-or-windows-users\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.maisetechnology.com\/2022\/01\/31\/new-malware-can-infect-linux-mac-or-windows-users\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.maisetechnology.com\/2022\/01\/31\/new-malware-can-infect-linux-mac-or-windows-users\/#primaryimage\",\"url\":\"https:\/\/www.maisetechnology.com\/wp-content\/uploads\/2023\/01\/malware-resized-1-1.png\",\"contentUrl\":\"https:\/\/www.maisetechnology.com\/wp-content\/uploads\/2023\/01\/malware-resized-1-1.png\",\"width\":300,\"height\":225,\"caption\":\"New Malware Can Infect Linux, Mac, Or Windows Users\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.maisetechnology.com\/2022\/01\/31\/new-malware-can-infect-linux-mac-or-windows-users\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/www.maisetechnology.com\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"New Malware Can Infect Linux, Mac, Or Windows Users\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.maisetechnology.com\/#website\",\"url\":\"https:\/\/www.maisetechnology.com\/\",\"name\":\"Maise Technology\",\"description\":\"Just another WordPress site\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.maisetechnology.com\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.maisetechnology.com\/#\/schema\/person\/eb4c832909343bad9b29835cbde276a5\",\"name\":\"maisegroup\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.maisetechnology.com\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/253b0df440d3cf0019e97554b1e058c6?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/253b0df440d3cf0019e97554b1e058c6?s=96&d=mm&r=g\",\"caption\":\"maisegroup\"},\"url\":\"https:\/\/www.maisetechnology.com\/author\/maisegroup\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"New Malware Can Infect Linux, Mac, Or Windows Users | Maise Technology","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.maisetechnology.com\/2022\/01\/31\/new-malware-can-infect-linux-mac-or-windows-users\/","og_locale":"en_US","og_type":"article","og_title":"New Malware Can Infect Linux, Mac, Or Windows Users | Maise Technology","og_description":"[vc_row][vc_column][vc_column_text]There’s a new strain of malware called SysJoker to be mindful of. It’s especially dangerous because it can target Windows, Mac or Linux systems. That makes it an equal opportunity strain. Researchers at Intezer are credited with discovering the malware in the wild in December of 2021 during an investigation of an attack on a…","og_url":"https:\/\/www.maisetechnology.com\/2022\/01\/31\/new-malware-can-infect-linux-mac-or-windows-users\/","og_site_name":"Maise Technology","article_published_time":"2022-01-31T15:00:58+00:00","article_modified_time":"2023-01-18T21:24:20+00:00","og_image":[{"width":300,"height":225,"url":"https:\/\/www.maisetechnology.com\/wp-content\/uploads\/2023\/01\/malware-resized-1-1.png","type":"image\/png"}],"author":"maisegroup","twitter_card":"summary_large_image","twitter_misc":{"Written by":"maisegroup","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/www.maisetechnology.com\/2022\/01\/31\/new-malware-can-infect-linux-mac-or-windows-users\/","url":"https:\/\/www.maisetechnology.com\/2022\/01\/31\/new-malware-can-infect-linux-mac-or-windows-users\/","name":"New Malware Can Infect Linux, Mac, Or Windows Users | Maise Technology","isPartOf":{"@id":"https:\/\/www.maisetechnology.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.maisetechnology.com\/2022\/01\/31\/new-malware-can-infect-linux-mac-or-windows-users\/#primaryimage"},"image":{"@id":"https:\/\/www.maisetechnology.com\/2022\/01\/31\/new-malware-can-infect-linux-mac-or-windows-users\/#primaryimage"},"thumbnailUrl":"https:\/\/www.maisetechnology.com\/wp-content\/uploads\/2023\/01\/malware-resized-1-1.png","datePublished":"2022-01-31T15:00:58+00:00","dateModified":"2023-01-18T21:24:20+00:00","author":{"@id":"https:\/\/www.maisetechnology.com\/#\/schema\/person\/eb4c832909343bad9b29835cbde276a5"},"breadcrumb":{"@id":"https:\/\/www.maisetechnology.com\/2022\/01\/31\/new-malware-can-infect-linux-mac-or-windows-users\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.maisetechnology.com\/2022\/01\/31\/new-malware-can-infect-linux-mac-or-windows-users\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.maisetechnology.com\/2022\/01\/31\/new-malware-can-infect-linux-mac-or-windows-users\/#primaryimage","url":"https:\/\/www.maisetechnology.com\/wp-content\/uploads\/2023\/01\/malware-resized-1-1.png","contentUrl":"https:\/\/www.maisetechnology.com\/wp-content\/uploads\/2023\/01\/malware-resized-1-1.png","width":300,"height":225,"caption":"New Malware Can Infect Linux, Mac, Or Windows Users"},{"@type":"BreadcrumbList","@id":"https:\/\/www.maisetechnology.com\/2022\/01\/31\/new-malware-can-infect-linux-mac-or-windows-users\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.maisetechnology.com\/"},{"@type":"ListItem","position":2,"name":"New Malware Can Infect Linux, Mac, Or Windows Users"}]},{"@type":"WebSite","@id":"https:\/\/www.maisetechnology.com\/#website","url":"https:\/\/www.maisetechnology.com\/","name":"Maise Technology","description":"Just another WordPress site","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.maisetechnology.com\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/www.maisetechnology.com\/#\/schema\/person\/eb4c832909343bad9b29835cbde276a5","name":"maisegroup","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.maisetechnology.com\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/253b0df440d3cf0019e97554b1e058c6?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/253b0df440d3cf0019e97554b1e058c6?s=96&d=mm&r=g","caption":"maisegroup"},"url":"https:\/\/www.maisetechnology.com\/author\/maisegroup\/"}]}},"_links":{"self":[{"href":"https:\/\/www.maisetechnology.com\/wp-json\/wp\/v2\/posts\/4041"}],"collection":[{"href":"https:\/\/www.maisetechnology.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.maisetechnology.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.maisetechnology.com\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.maisetechnology.com\/wp-json\/wp\/v2\/comments?post=4041"}],"version-history":[{"count":1,"href":"https:\/\/www.maisetechnology.com\/wp-json\/wp\/v2\/posts\/4041\/revisions"}],"predecessor-version":[{"id":4043,"href":"https:\/\/www.maisetechnology.com\/wp-json\/wp\/v2\/posts\/4041\/revisions\/4043"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.maisetechnology.com\/wp-json\/wp\/v2\/media\/4042"}],"wp:attachment":[{"href":"https:\/\/www.maisetechnology.com\/wp-json\/wp\/v2\/media?parent=4041"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.maisetechnology.com\/wp-json\/wp\/v2\/categories?post=4041"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.maisetechnology.com\/wp-json\/wp\/v2\/tags?post=4041"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}