
| Names | DOPLUGS | |
| Category | Malware | |
| Type | Backdoor | |
| Description | (Trend Micro) During analysis, we observed that the piece of customized PlugX malware is dissimilar to the general type of the PlugX malware that contains a completed backdoor command module, and that the former is only used for downloading the latter. Due to its different functionality, we decided to give this piece of customized PlugX malware a new name: DOPLUGS. | |
| Information | <https://www.trendmicro.com/en_us/research/24/b/earth-preta-campaign-targets-asia-doplugs.html> | |
| Malpedia | <https://malpedia.caad.fkie.fraunhofer.de/details/win.doplugs> | |
Last change to this tool card: 27 December 2024
Download this tool card in JSON format
Previous: DoorMe
Next: DoppelPaymer
| Changed | Name | Country | Observed | ||
APT groups | |||||
| Mustang Panda, Bronze President | 2012-Jun 2025 | ||||
1 group listed (1 APT, 0 other, 0 unknown)
|
Digital Service Security Center Follow us on |
Report incidents |
|
| +66 (0)2-123-1227 | ||
| [email protected] | ||