Description
Nitol is a DDoS botnet whose spread Microsoft disrupted in 2012 after discovering it hidden in the supply chain of unsecure devices. Later campaigns installed the Amadey bot on infected machines alongside its denial of service activity, showing continued use as a delivery channel.
Stats
- First seen
- May 2022
- Last seen
- October 2026
Alert name variants
| Alert Name |
|---|
| Win32.Backdoor.Nitol |
| Win32.Downloader.Nitol |
| Win32.Exploit.Nitol |
| Win32.Network.Nitol |
| Win32.Ransomware.Nitol |
| Win32.Trojan.Nitol |
| Win32.Worm.Nitol |
