‘Great Duke of Hell’: The New Invisible Man Malware

By: - July 11, 2019

The Great Duke of Hell. That’s the name of a particularly nasty piece of malware security researchers from Microsoft have identified circulating the World Wide Web.

On 8 June, analysts from the Microsoft Defender Advanced Threat Protection Research Team issued a warning to confirm that a notorious credential-stealing malware threat is targeting Windows users.

Dubbed Astaroth, or “the Great Duke of Hell” upon its discovery in 2017, the malware is essentially a Trojan program that gathers user credentials. What makes this one so dangerous is that it uses an “invisible man” methodology by only running files within the attack chain that are legitimate system tools. What this means basically is that the computer itself is directed to program malicious commands on itself. This allows the Duke of Hell to hide in plain sight, slipping through most malware detection systems.

According to Microsoft’s telemetry, the most recent campaign commenced on 19 May and carried on into mid-June, with at least four significant spikes in activity. The two biggest surges by far took place between 26 May and 1 June, and between June 2 and June 6.

The typical attack procedure would begin with a spear-phishing email containing a link that if clicked installs the Trojan.

While concerning in and of itself, Duke of Hell marks a milestone in the development of cyber threats. The development of so-called fileless malware, in which the virus doesn’t get the systems through a specific document, but rather is installed within the RAM of the computer itself, has been a growing concern over the past year. Among the growing awareness of cyber threats being a primary danger to national security, fileless attacks are uniquely problematic. They circumvent traditional methods of detection, and often require advanced diagnostics to uncover.

  • RSS WND

    • Ex-CNN anchor taking own kids to Israel to be 'safer' amid unhinged anti-Israel protests in NYC
      (FAITHWIRE) -- Ex-CNN anchor Campbell Brown posted a sobering message on social media Sunday. The former TV host said she is taking her sons to Israel, where they will “be safer and feel more welcomed” than they currently are in New York City, where pro-Palestinian protests rage. “I’m on my way to Israel, where my… […]
    • The Exorcist Files: How a hit podcast about demons is leading people to Christ
      (CBN NEWS) -- God is using an unusual topic to spread the Gospel in a podcast that has become a huge success: exorcism and spiritual warfare. With more than seven and a half million downloads, The Exorcist Files has topped Spotify charts for more than 40 weeks. The creators of the show recently launched a… […]
    • Rudy Giuliani, Mark Meadows, other Trump aides indicted in Arizona 2020 election probe
      (JUST THE NEWS) -- An Arizona grand jury on Wednesday indicted former White House Chief of Staff Mark Meadows, Rudy Giuliani, and five other former aides to former President Donald Trump on felony charges related to alleged efforts to overturn the results of the 2020 election. Eleven Arizona Republicans have also been indicted on the… […]
    • 'Friends' star details 'intense' moment fiancé ended relationship
      (FOX NEWS) -- Courteney Cox is detailing the moment fiancé Johnny McDaid once broke up with her mid-therapy session. During an appearance on the "Minnie Questions" podcast on Wednesday, Cox opened up about the "really intense" moment and explained why it strengthened their relationship in the end. "We broke up in therapy. I didn’t know… […]
    • 'Lucky' golden retriever puppy born with lime green fur takes internet by storm
      (NEW YORK POST) -- Hue's the cutest girl? An adorable golden retriever puppy became the apple of the internet’s eye when she was born last month with rare lime-green fur. The 6-week-old pooch, named Shamrock, was welcomed to the world in Pensacola, Florida, on March 3 — with a “lucky” green shade likely caused by… […]
    • How Dems could be held accountable for tossing Mayorkas impeachment
      As most are aware, Senate Democrats recently voted unanimously to discard the House impeachment articles against Alejandro Mayorkas for his unlawful implementation of Biden's open border policies. This was the first time in U.S. history that an impeachment has been summarily discarded by the U.S. Senate for a person still in office for crimes alleged… […]
    • Why has the Left finally noticed pedophilia?
      Scrolling through Twitter on Tuesday, I came across a sober video message from celebrity gadabout Paris Hilton. Dressed down in a modest track suit, Ms. Hilton sounded all the word like what the media might call a "QAnon fanatic." "And I really hope this is a lesson to people out there that if you're abusing… […]
    • Western Marxist intellectuals are useful idiots
      Read Hanne's The Herland Report. Columbia University and many prominent American educational facilities have been cesspools for Marxist radicalization for generations. The Marxist idea has long been to orchestrate revolutions that, in time, will kill capitalism and the classic freedoms of the West. When the capitalist system crumbles and falls in a ravaging civil disruption… […]
    • Is Dearborn, Michigan the new Tehran?
      It was International Quds Day – an annual pro-Palestinian event held on the last Friday of the Islamic holy month of Ramadan (March 10-April 9, 2024). The Muslim holy day was first established in 1979 by Iran to demonstrate support for the Palestinians and opposition to the Israelis. For Westerners, one such event was frightening… […]
    • Sorry, there's no right to sleep outdoors
      In a Supreme Court showdown Monday over whether the homeless have a "right" to camp in public, almost no one mentioned the actual victims of that crazy idea. Homeless advocates, including the American Civil Liberties Union, told the court that living on the streets is a "victimless" crime. Victimless? Everyone who has to step over… […]
  • Enter My WorldView