
| Names | StealthFalcon | |
| Category | Malware | |
| Type | Backdoor, Exfiltration | |
| Description | (ESET) The Win32/StealthFalcon backdoor, which appears to have been created in 2015, allows the attacker to control the compromised computer remotely. We have seen a small number of targets in UAE, Saudi Arabia, Thailand, and the Netherlands; in the latter case, the target was a diplomatic mission of a Middle Eastern country. How the backdoor was distributed and executed on the target systems is beyond the scope of this investigation; our analysis focuses on its capabilities and its C&C communication. | |
| Information | <https://www.welivesecurity.com/2019/09/09/backdoor-stealth-falcon-group/> | |
Last change to this tool card: 20 April 2020
Download this tool card in JSON format
Previous: Stealer
Next: Stealth Mango
| Changed | Name | Country | Observed | ||
APT groups | |||||
| Stealth Falcon, FruityArmor | 2012-Mar 2025 | ||||
1 group listed (1 APT, 0 other, 0 unknown)
|
Digital Service Security Center Follow us on |
Report incidents |
|
| +66 (0)2-123-1227 | ||
| [email protected] | ||