{"id":3990,"date":"2022-01-22T19:56:57","date_gmt":"2022-01-23T00:56:57","guid":{"rendered":"https:\/\/truxgoservers.com\/blog\/?p=3990"},"modified":"2022-01-22T19:56:58","modified_gmt":"2022-01-23T00:56:58","slug":"new-stealth-threat-called-sysjoker-backdoor","status":"publish","type":"post","link":"https:\/\/truxgoservers.com\/blog\/new-stealth-threat-called-sysjoker-backdoor\/","title":{"rendered":"New Stealth Threat Called SysJoker Backdoor"},"content":{"rendered":"\n<p>Called SysJoker, none of VirusTotal&#8217;s security engines currently detect cross-platform malware. SysJoker was discovered by Intezer researchers during an active attack on a Linux-based web server belonging to a leading educational institution.<\/p>\n\n\n\n<p>SysJoker masquerades as a system update and creates its command and control (C2) by decoding a string from an article file hosted on Google plus Drive, Intezer teaches. It was found that C2 was never incessant, which means that the attacker periodically monitors the infected machines. The security company concluded that the malware was directed at specific targets.<\/p>\n\n\n\n<p>Essentially, SysJoker creates a sequence of registry and command files that allow it to perform commands on the terminated device, dispose of other malware, or even arrange for the backdoor to be removed. The attack was reportedly carried out by an \u201canticipated threat actor\u201d, depending on the skills of the malware. Intezer adds that the purpose of the attack is to spy with a flank move that could likely lead to a ransomware attack as among the next steps.<\/p>\n\n\n\n<p>An older example of cross-platform malware targeting Windows, macOS, and Linux was detected by the same researchers in January of last year. Called ElectroRAT, the malicious operation was quite elaborate in its mechanism, consisting of a marketing campaign, custom cryptocurrency-related apps, and a RAT remote access tool.<\/p>\n\n\n\n<p>Remember that it is always better to take certain precautions to protect yourself from malicious software. Do not download pirated software or electronic media from unreliable sources. Avoid clicking on suspicious links or attachments in suspicious emails, always check the Internet address first.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Today we will talk about a threat that puts 3 important platforms at risk, called SysJoker Backdoor which is quite interesting&#8230;&#8230;<\/p>\n","protected":false},"author":1,"featured_media":3991,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[10],"tags":[36],"class_list":["post-3990","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","tag-cybersecurity"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.4 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>New Stealth Threat Called SysJoker Backdoor - Truxgo Server Blog<\/title>\n<meta name=\"description\" content=\"Today we will talk about a threat that puts 3 important platforms at risk, called SysJoker Backdoor which is quite interesting......\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/truxgoservers.com\/blog\/new-stealth-threat-called-sysjoker-backdoor\/\" \/>\n<meta property=\"og:locale\" content=\"es_MX\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"New Stealth Threat Called SysJoker Backdoor - Truxgo Server Blog\" \/>\n<meta property=\"og:description\" content=\"Today we will talk about a threat that puts 3 important platforms at risk, called SysJoker Backdoor which is quite interesting......\" \/>\n<meta property=\"og:url\" content=\"https:\/\/truxgoservers.com\/blog\/new-stealth-threat-called-sysjoker-backdoor\/\" \/>\n<meta property=\"og:site_name\" content=\"Truxgo Server Blog\" \/>\n<meta property=\"article:published_time\" content=\"2022-01-23T00:56:57+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2022-01-23T00:56:58+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2022\/01\/Sys.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1327\" \/>\n\t<meta property=\"og:image:height\" content=\"788\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Truxgo\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Escrito por\" \/>\n\t<meta name=\"twitter:data1\" content=\"Truxgo\" \/>\n\t<meta name=\"twitter:label2\" content=\"Tiempo de lectura\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutos\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/new-stealth-threat-called-sysjoker-backdoor\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/new-stealth-threat-called-sysjoker-backdoor\\\/\"},\"author\":{\"name\":\"Truxgo\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/person\\\/8b409c26449db6aa09724b45331e333e\"},\"headline\":\"New Stealth Threat Called SysJoker Backdoor\",\"datePublished\":\"2022-01-23T00:56:57+00:00\",\"dateModified\":\"2022-01-23T00:56:58+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/new-stealth-threat-called-sysjoker-backdoor\\\/\"},\"wordCount\":266,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/new-stealth-threat-called-sysjoker-backdoor\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2022\\\/01\\\/Sys.jpg\",\"keywords\":[\"Cybersecurity\"],\"articleSection\":[\"Cybersecurity\"],\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/new-stealth-threat-called-sysjoker-backdoor\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/new-stealth-threat-called-sysjoker-backdoor\\\/\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/new-stealth-threat-called-sysjoker-backdoor\\\/\",\"name\":\"New Stealth Threat Called SysJoker Backdoor - Truxgo Server Blog\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/new-stealth-threat-called-sysjoker-backdoor\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/new-stealth-threat-called-sysjoker-backdoor\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2022\\\/01\\\/Sys.jpg\",\"datePublished\":\"2022-01-23T00:56:57+00:00\",\"dateModified\":\"2022-01-23T00:56:58+00:00\",\"description\":\"Today we will talk about a threat that puts 3 important platforms at risk, called SysJoker Backdoor which is quite interesting......\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/new-stealth-threat-called-sysjoker-backdoor\\\/#breadcrumb\"},\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/new-stealth-threat-called-sysjoker-backdoor\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/new-stealth-threat-called-sysjoker-backdoor\\\/#primaryimage\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2022\\\/01\\\/Sys.jpg\",\"contentUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2022\\\/01\\\/Sys.jpg\",\"width\":1327,\"height\":788},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/new-stealth-threat-called-sysjoker-backdoor\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"New Stealth Threat Called SysJoker Backdoor\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\",\"name\":\"Truxgo Server Blog\",\"description\":\"Cloud Server and Hosting Tutorials.\",\"publisher\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"es\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\",\"name\":\"Truxgo Server Blog\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/cropped-truxgo-logo-blanco.png\",\"contentUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/cropped-truxgo-logo-blanco.png\",\"width\":1250,\"height\":278,\"caption\":\"Truxgo Server Blog\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/person\\\/8b409c26449db6aa09724b45331e333e\",\"name\":\"Truxgo\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"caption\":\"Truxgo\"},\"sameAs\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\"],\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/author\\\/truxgo\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"New Stealth Threat Called SysJoker Backdoor - Truxgo Server Blog","description":"Today we will talk about a threat that puts 3 important platforms at risk, called SysJoker Backdoor which is quite interesting......","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/truxgoservers.com\/blog\/new-stealth-threat-called-sysjoker-backdoor\/","og_locale":"es_MX","og_type":"article","og_title":"New Stealth Threat Called SysJoker Backdoor - Truxgo Server Blog","og_description":"Today we will talk about a threat that puts 3 important platforms at risk, called SysJoker Backdoor which is quite interesting......","og_url":"https:\/\/truxgoservers.com\/blog\/new-stealth-threat-called-sysjoker-backdoor\/","og_site_name":"Truxgo Server Blog","article_published_time":"2022-01-23T00:56:57+00:00","article_modified_time":"2022-01-23T00:56:58+00:00","og_image":[{"width":1327,"height":788,"url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2022\/01\/Sys.jpg","type":"image\/jpeg"}],"author":"Truxgo","twitter_card":"summary_large_image","twitter_misc":{"Escrito por":"Truxgo","Tiempo de lectura":"2 minutos"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/truxgoservers.com\/blog\/new-stealth-threat-called-sysjoker-backdoor\/#article","isPartOf":{"@id":"https:\/\/truxgoservers.com\/blog\/new-stealth-threat-called-sysjoker-backdoor\/"},"author":{"name":"Truxgo","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/person\/8b409c26449db6aa09724b45331e333e"},"headline":"New Stealth Threat Called SysJoker Backdoor","datePublished":"2022-01-23T00:56:57+00:00","dateModified":"2022-01-23T00:56:58+00:00","mainEntityOfPage":{"@id":"https:\/\/truxgoservers.com\/blog\/new-stealth-threat-called-sysjoker-backdoor\/"},"wordCount":266,"commentCount":0,"publisher":{"@id":"https:\/\/truxgoservers.com\/blog\/#organization"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/new-stealth-threat-called-sysjoker-backdoor\/#primaryimage"},"thumbnailUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2022\/01\/Sys.jpg","keywords":["Cybersecurity"],"articleSection":["Cybersecurity"],"inLanguage":"es","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/truxgoservers.com\/blog\/new-stealth-threat-called-sysjoker-backdoor\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/truxgoservers.com\/blog\/new-stealth-threat-called-sysjoker-backdoor\/","url":"https:\/\/truxgoservers.com\/blog\/new-stealth-threat-called-sysjoker-backdoor\/","name":"New Stealth Threat Called SysJoker Backdoor - Truxgo Server Blog","isPartOf":{"@id":"https:\/\/truxgoservers.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/truxgoservers.com\/blog\/new-stealth-threat-called-sysjoker-backdoor\/#primaryimage"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/new-stealth-threat-called-sysjoker-backdoor\/#primaryimage"},"thumbnailUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2022\/01\/Sys.jpg","datePublished":"2022-01-23T00:56:57+00:00","dateModified":"2022-01-23T00:56:58+00:00","description":"Today we will talk about a threat that puts 3 important platforms at risk, called SysJoker Backdoor which is quite interesting......","breadcrumb":{"@id":"https:\/\/truxgoservers.com\/blog\/new-stealth-threat-called-sysjoker-backdoor\/#breadcrumb"},"inLanguage":"es","potentialAction":[{"@type":"ReadAction","target":["https:\/\/truxgoservers.com\/blog\/new-stealth-threat-called-sysjoker-backdoor\/"]}]},{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/truxgoservers.com\/blog\/new-stealth-threat-called-sysjoker-backdoor\/#primaryimage","url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2022\/01\/Sys.jpg","contentUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2022\/01\/Sys.jpg","width":1327,"height":788},{"@type":"BreadcrumbList","@id":"https:\/\/truxgoservers.com\/blog\/new-stealth-threat-called-sysjoker-backdoor\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/truxgoservers.com\/blog\/"},{"@type":"ListItem","position":2,"name":"New Stealth Threat Called SysJoker Backdoor"}]},{"@type":"WebSite","@id":"https:\/\/truxgoservers.com\/blog\/#website","url":"https:\/\/truxgoservers.com\/blog\/","name":"Truxgo Server Blog","description":"Cloud Server and Hosting Tutorials.","publisher":{"@id":"https:\/\/truxgoservers.com\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/truxgoservers.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"es"},{"@type":"Organization","@id":"https:\/\/truxgoservers.com\/blog\/#organization","name":"Truxgo Server Blog","url":"https:\/\/truxgoservers.com\/blog\/","logo":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/08\/cropped-truxgo-logo-blanco.png","contentUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/08\/cropped-truxgo-logo-blanco.png","width":1250,"height":278,"caption":"Truxgo Server Blog"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/person\/8b409c26449db6aa09724b45331e333e","name":"Truxgo","image":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","caption":"Truxgo"},"sameAs":["https:\/\/truxgoservers.com\/blog"],"url":"https:\/\/truxgoservers.com\/blog\/author\/truxgo\/"}]}},"_links":{"self":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/3990","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/comments?post=3990"}],"version-history":[{"count":1,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/3990\/revisions"}],"predecessor-version":[{"id":3992,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/3990\/revisions\/3992"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/media\/3991"}],"wp:attachment":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/media?parent=3990"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/categories?post=3990"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/tags?post=3990"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}