Skip to content

Malware

Contopee

aka WHITEOUT

FireEye described this malware as a proxy-aware backdoor that communicates using a custom-encrypted binary protocol.

FireEye described this malware as a proxy-aware backdoor that communicates using a custom-encrypted binary protocol. It may use the registry to store optional configuration data. The backdoor has been observed to support 26 commands that include directory traversal, file system manipulation, data archival and transmission, and command execution.


Family metadata imported from Malpedia (Fraunhofer FKIE).