Blog | G5 Cyber Security

SYSCON Backdoor Uses FTP as a Command & Control Server

A Critical Backdoor called SYSCONs uses File Transfer Protocol ( FTP ) as a Command & Control Server. Targeted individuals may be connected to the Red Cross and the World Health Organization especially. Document mentions North Korea. Researchers Detected the Malicious files in these. files under the following detection names: BAT_ SYSCON.A, BKDR_SYSCon, and TROJ.A. Malicious. files. Contains 2 Long Strings along with a custom. encoding that using a custom alphabet which has already used by Sanny malware family.”]

Source: https://gbhackers.com/ftp-command-control-server/

Exit mobile version