
| Names | Retro | |
| Category | Exploits | |
| Type | Backdoor | |
| Description | (Qihoo 360) The backdoor program used in this attack is actually the Retro series backdoor known to be used by the APT-C-06 organization. | |
| Information | <https://blog.360totalsecurity.com/en/analysis-cve-2018-8174-vbscript-0day-apt-actor-related-office-targeted-attack/> <https://www.welivesecurity.com/2020/05/13/ramsay-cyberespionage-toolkit-airgapped-networks/> <https://blog.bushidotoken.net/2020/06/deep-dive-darkhotel-apt.html> | |
| Malpedia | <https://malpedia.caad.fkie.fraunhofer.de/details/win.retro> | |
Last change to this tool card: 24 April 2021
Download this tool card in JSON format
| Changed | Name | Country | Observed | ||
APT groups | |||||
| DarkHotel | 2007-2023 | ||||
1 group listed (1 APT, 0 other, 0 unknown)
|
Digital Service Security Center Follow us on |
Report incidents |
|
| +66 (0)2-123-1227 | ||
| [email protected] | ||