#Anchor_DNS

Malware/Tool

2019-12-11 • ROPPING ANCHOR: FROM A TRICKBOT INFECTION TO THE DISCOVERY OF THE ANCHOR MALWARE

Anchor_DNS is a stealthy backdoor selectively deployed after TrickBot infections against high-profile targets. It communicates through DNS tunneling, can transfer data and receive commands, and newer variants add ICMP availability checks, obfuscation, and argument-gated execution.

Tagged Reports

« Back