Mongall
Description
(SentinelLabs) Mongall is a small backdoor going back to 2013, first described in a report by ESET. According to the report, the threat actor was trying to target the Telecommunications Department and the Vietnamese government. More recently, Aoqin Dragon has been reported targeting Southeast Asia with an upgraded Mongall encryption protocol and Themida packer.
Names
Name |
---|
Mongall |
Category
Malware
Type
- Backdoor
Information
- https://www.sentinelone.com/labs/aoqin-dragon-newly-discovered-chinese-linked-apt-has-been-quietly-spying-on-organizations-for-10-years/
- https://www.fireeye.com/content/dam/fireeye-www/global/en/current-threats/pdfs/wp-operation-quantum-entanglement.pdf
Mitre Attack
Malpedia
Alienvault Otx
Other Information
Uuid
4d5089f2-9389-496e-a4cd-4e45af89f928
Last Card Change
2022-12-30