Close Menu
Pineapples Update –Pineapples Update –

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    EA Sports FC 25, FBC: Firebreak and more Xbox Game Pass in June

    June 8, 2025

    Princess Peach’s voice has been replaced by the actor after 18 years

    June 8, 2025

    Best technical gifts for Father’s Day 2025

    June 8, 2025
    Facebook X (Twitter) Instagram
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Pineapples Update –Pineapples Update –
    • Home
    • Gaming
    • Gadgets
    • Startups
    • Security
    • How-To
    • AI/ML
    • Apps
    • Web3
    Pineapples Update –Pineapples Update –
    Home»Security»Fake AI Video Generator Drop New Noodlofile Infoselor Malware
    Security

    Fake AI Video Generator Drop New Noodlofile Infoselor Malware

    PineapplesUpdateBy PineapplesUpdateMay 11, 2025No Comments3 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Fake AI Video Generator Drop New Noodlofile Infoselor Malware
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Fake AI Video Generator Drop New Noodlofile Infoselor Malware

    The fake AI-operated video generation tool is being used to distribute a new information-dilemma family called ‘Noodlofile’ under the guise of media content generated.

    Websites use seductive names such as the “Dream Machine” and are advertised on high-visual groups on Facebook, presenting as advanced AI tools that generate videos based on uploaded user files.

    Although the use of AI tools for giving malware is not a new concept and it is adopted by experienced cyber criminal, discovery of the latest campaign By morphishek The mixture introduces a new infostealer.

    According to Morpheishe, Noodlofile is being sold on the dark web forum, which is often bundled with “cookie + pass” services, so it is a new Malware-A-Sarvis Operation that is associated with Vietnamese-speaking operators.

    Facebook is taking users to malicious websites
    Facebook is taking users to malicious websites
    Source: Morphishek

    Multi-step transition chain

    Once the victim goes to the malicious website and uploads his files, they receive a zip collection that involves AI-related video.

    Instead, the zip consists of an misleading folder with a misleading (video Dream Machineai.mp4.exe), and a hidden folder with various files required for later stages. If a Windows user has a file extension (never do this), then in a quick look, the MP4 will look like a video file.

    “File video Dream Machineai.mp4.exe is a 32-bit C ++ application signed using a certificate made through WINAUTH,” explains Morpheisek.

    “Despite its misleading name (suggesting a .MP4 video), this binary is actually a renovated version of Capcut, a legitimate video editing tool (version 445.0).

    A DreamMachin Site Payload Site
    A DreamMachin Site Payload Site
    Source: Morphishek

    By double-clicking on fake MP4, a series will be executed in execution that eventually launchs a batch script (Document.docx/Install.bat).

    The script uses a base 64-Encoded Password-protected RAR collection as the script PDF document. The script uses a valid Windows Tool ‘Certificate.XE’. At the same time, it also adds a new registry key to perseverance.

    Subsequently, the script executes the ‘srchost.exe’, which runs an objected python script (Randomuser2025.txt) from a hardcoded remote server address, eventually executing nudalophile steeler in the memory.

    If Avast is detected on the agreement system, pelowing is used to inject the payload into regasm.exe. Otherwise, shellcode injections are used for in-memory execution.

    Complete performance chain
    Complete performance chain
    Source: Morphishek

    Noodlophile is a new information stealing malware that targets data stored on web browsers such as account credentials, sessions cookies, tokens and cryptocurrency wallet files.

    “Noodlofile steeler represents a new addition to the steeler malware ecosystem. First in public malware trackers or report, this steeler browser credential theft, wallet exfIs and optional remote access to the deployment,” Morphis researchers.

    The stolen data is exfilled through a telegram bot, which acts as a secret command and control (C2) server, which provides real -time use to the attackers.

    In some cases, the noodlophile is bundled with Xworm, a remote access trojan, raising the abilities of data theft to the attackers that move well beyond the convenient passively stolen by the information-level.

    The best way to protect against malware is to avoid downloading and executing files from unknown websites.

    Always verify the file extension before opening, and scan all the downloaded files on an up-to-date AV tool before executing.


    Red Report 2025

    Based on the analysis of 14M malicious tasks, search for the top 10 MITERAT & CK techniques behind the 93% attacks and how to defend them against them.

    Drop fake generator Infoselor Malware Noodlofile video
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous Article10 Games where you are not the main hero of the story
    Next Article Hitman World of Assurance PSVR 2 Review: The Soni VR Headset Killing Blow
    PineapplesUpdate
    • Website

    Related Posts

    Security

    Remove project directors presented as malicious NPM package utilities

    June 8, 2025
    Security

    Supply series attacks Glustac NPM package with 960K weekly download

    June 7, 2025
    Security

    Exploitation of Critical Round Cube webmail as hacker taking intly

    June 7, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Microsoft’s new text editor is a VIM and Nano option

    May 19, 2025592 Views

    The best luxury car for buyers for the first time in 2025

    May 19, 2025535 Views

    Massives Datenleck in Cloud-Spichenn | CSO online

    May 19, 2025463 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    Huawei Watch Fit 4 Pro Review: This is great, provided you can get one thing

    May 16, 20250 Views

    Robot Video: Battlefield Triages, Firefighting Drone, and more

    May 16, 20250 Views

    Norman Reids of Death Stranding and The Walking Dead does not think “anyone can understand”

    May 16, 20250 Views
    Our Picks

    EA Sports FC 25, FBC: Firebreak and more Xbox Game Pass in June

    June 8, 2025

    Princess Peach’s voice has been replaced by the actor after 18 years

    June 8, 2025

    Best technical gifts for Father’s Day 2025

    June 8, 2025

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms And Conditions
    • Disclaimer
    © 2025 PineapplesUpdate. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.