Names | DarkVNC | |
Category | Malware | |
Type | Backdoor | |
Description | (Talos) DarkVNC attempts to connect to the C2 server using the TCP port 8080, likely to be less suspicious as this is one of the default ports for connections to HTTP proxies. | |
Information | <https://blog.talosintelligence.com/2020/04/azorult-brings-friends-to-party.html> |
Last change to this tool card: 29 April 2020
Download this tool card in JSON format
Previous: Dark Tequila
Next: DarthPusher
Changed | Name | Country | Observed | ||
Other groups | |||||
TA554 | [Unknown] | 2017 |
1 group listed (0 APT, 1 other, 0 unknown)
Thailand Computer Emergency Response Team (ThaiCERT) Follow us on![]() ![]() |
Report incidents |
|
![]() |
+66 (0)2-123-1234 | |
![]() |
report@thaicert.or.th | |
![]() |
Download PGP key |