Pushdo Botnet
Pushdo, also known as the Cutwail or Pandex botnet, is an advanced downloader that first infects a targeted system and then downloads the Cutwail spam module (also owned by the same group).
This content has been archived
This article no longer conforms to NHS Digital's standards for cyber alerts, and may contain outdated or inaccurate information. Use of this information contained in this page is at your own risk
Summary
Pushdo, also known as the Cutwail or Pandex botnet, is an advanced downloader that first infects a targeted system and then downloads the Cutwail spam module (also owned by the same group).
Affected platforms
The following platforms are known to be affected:
Threat details
After they have sent out a number of spam emails from the infected computer, it reports the exact statistics on the number of emails that were delivered back to the spammer, as well as which and how many errors were reported. This malware also functions as a Distributed Denial of Service (DDoS) botnet that can be used to launch attacks on Secure Sockets Layer (SSL) encrypted websites over port 443.
Remediation steps
Last edited: 17 February 2020 11:37 am