Agent Racoon

Description

(Palo Alto) This malware family is written using the .NET framework and leverages the domain name service (DNS) protocol to create a covert channel and provide different backdoor functionalities. Threat actors have used this along with the other two tools in multiple attacks targeting organizations across the U.S., Middle East and Africa. Its C2 infrastructure dates back to 2020.

Names

Name
Agent Racoon

Category

Malware

Type

  • Backdoor

Information

Malpedia

Other Information

Uuid

cbeb7fae-a592-4100-b205-48ec21bbdef0

Last Card Change

2024-12-27