#DeltaCharlie

Malware/Tool

2017-06-13 • HIDDEN COBRA – North Korea’s DDoS Botnet Infrastructure

DeltaCharlie is Windows attack malware documented by US-CERT from three associated files. Its components support NTP, DNS, and CGN denial-of-service operations while establishing backdoor command-and-control capability on a victim system. One analyzed PE32 executable for Intel 80386 Windows systems was identified by security products as a backdoor or hacking tool. The command-line utility can install itself when invoked with the -i argument and allows an operator to push secondary payloads to a compromised system.

Tagged Reports

« Back