Pierogi

Description

(Cybereason) Pierogi, the backdoor in this attack, appears to be a new backdoor written in Delphi. It enables the attackers to spy on victims using rather basic backdoor capabilities. While it is unknown at this point whether the backdoor was coded by the same members of the group behind the attacks, there are indications that suggest that the malware was authored by Ukranian-speaking malware developers. The commands used to communicate with the C2 servers and other strings in the binary are written in Ukrainian.

Names

Name
Pierogi

Category

Malware

Type

  • Backdoor

Information

Malpedia

Alienvault Otx

Other Information

Uuid

5bd03b18-ff02-4502-a5ae-cfa8d4ff17c8

Last Card Change

2021-04-24