Infy
Description
(Palo Alto) The malware connects to the C2 every five minutes using HTTP, posting:
Names
Name |
---|
Infy |
Foudre |
Category
Malware
Type
- Reconnaissance
Information
- https://unit42.paloaltonetworks.com/prince-of-persia-infy-malware-active-in-decade-of-targeted-attacks/
- https://www.intezer.com/prince-of-persia-the-sands-of-foudre/
- https://researchcenter.paloaltonetworks.com/2017/08/unit42-prince-persia-ride-lightning-infy-returns-foudre/
- https://github.com/pan-unit42/iocs/blob/master/prince_of_persia/hashes.csv
Malpedia
Alienvault Otx
Other Information
Uuid
cfe90b10-0ec9-47d0-9774-a163fd3b7321
Last Card Change
2020-05-14