FatDuke
Description
(ESET) FatDuke, the third stage. This sophisticated backdoor implements a lot of functionalities and has a very flexible configuration. Its code is also well obfuscated using manu opaque predicates. They re-comple it and modify the obfuscation frequently to bypass security product detections.
Names
Name |
---|
FatDuke |
Category
Malware
Type
- Backdoor
Information
- https://www.welivesecurity.com/2019/10/17/operation-ghost-dukes-never-left/
- https://www.secureworks.com/research/threat-profiles/iron-hemlock
Mitre Attack
Malpedia
Other Information
Uuid
0facfa50-ed1b-4449-b2cc-6f0ce5565706
Last Card Change
2022-12-30