Pierogi
Description
(Cybereason) Pierogi, the backdoor in this attack, appears to be a new backdoor written in Delphi. It enables the attackers to spy on victims using rather basic backdoor capabilities. While it is unknown at this point whether the backdoor was coded by the same members of the group behind the attacks, there are indications that suggest that the malware was authored by Ukranian-speaking malware developers. The commands used to communicate with the C2 servers and other strings in the binary are written in Ukrainian.
Names
Name |
---|
Pierogi |
Category
Malware
Type
- Backdoor
Information
Malpedia
Alienvault Otx
Other Information
Uuid
5bd03b18-ff02-4502-a5ae-cfa8d4ff17c8
Last Card Change
2021-04-24