Sep8 |
2:09 pm (UTC-7) | by
Loucif Kharouni (Senior Threat Researcher) |
Who said that Cutwail/Pushdo botnet is dead? The recent Cutwail/Pushdo takedown was a great help in stopping this huge botnet in sending out spammed messages all over the world.
Yesterday, however, a new wave of approximately 5,000 fake Facebook messages was sent through some Cutwail zombies for about 30 minutes.
![]() |
The spammed message informs users that they received a private message and contains a bogus Facebook link, which actually points to {BLOCKED}icy.com, a Canadian pharmacy website hosted in China. As of this writing, however, the said site is no longer online.
This recent Pushdo/Cutwail update shows us that the spammers behind this botnet are on the move and are rebuilding their servers, domains, and the rest of their infrastructure in order to restore their botnet.





