A characteristic of PYbot that distinguishes it from ordinary DDoS Bot malware is that Pybot is only capable of performing DDoS attacks. Pybot is an open-source DDoS Bot malware developed with Python. Nitro Generator is a tool that generates codes that can be used for free access to Nitro.
Nitro is a paid Discord service with various benefits which can be seen below in Figure 1. The program used as bait by the threat actor is a token generator called Nitro Generator. The ASEC analysis team has recently discovered Pybot DDoS being distributed with illegal software. Many of the malware distributed in this way are Infostealers like Vidar, CryptBot, and RedLine. The ASEC analysis team is monitoring malware that is being distributed through illegal software like software cracks or serial keygens. After a threat actor uploads their malware disguised as a crack or serial keygen for some paid software, users become infected by the malware while installing this illegal software. Posted By Sanseo, FebruPYbot DDoS Malware Being Distributed Disguised as a Discord Nitro Code GeneratorĪ major method through which threat actors distribute malware is by uploading them to sites disguised as cracks or illegal software.