Skip to content

[Intel]: https://bazaar.abuse.ch/sample/05e9fe8e9e693cb073ba82096c291145c953ca3a3f8b3974f9c66d15c1a3a11d #751

@timb-machine

Description

@timb-machine

Area

Malware binaries

Parent threat

Command and Control, Exfiltration

Finding

https://bazaar.abuse.ch/sample/05e9fe8e9e693cb073ba82096c291145c953ca3a3f8b3974f9c66d15c1a3a11d/

Industry reference

attack:T1048:Exfiltration Over Alternative Protocol
attack:T1573:Encrypted Channel
attack:T1071:Application Layer Protocol
uses:Go

Malware reference

DeimosC2
/malware/binaries/Unix.Backdoor.DeimosC2

Actor reference

No response

Component

Linux

Scenario

No response

Metadata

Metadata

Assignees

Labels

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions