SpyGlace
Description
(ESET) The final payload is a custom backdoor we internally named SpyGlace, publicly documented by ThreatBook as TaskControler.dll.
Names
Name |
---|
SpyGlace |
Category
Malware
Type
- Backdoor
Information
- https://www.welivesecurity.com/en/eset-research/analysis-of-two-arbitrary-code-execution-vulnerabilities-affecting-wps-office/
- https://threatbook.io/blog/Analysis-of-APT-C-60-Attack-on-South-Korea
- https://blogs.jpcert.or.jp/ja/2024/11/APT-C-60.html
Other Information
Uuid
942b01bc-7247-47f8-8010-ff5a267953ad
Last Card Change
2024-12-26