Skip to content

Malware

DNSMessenger

aka TEXTMATE

DNSMessenger makes use of DNS TXT record queries and responses to create a bidirectional Command and Control (C2) channel.

DNSMessenger makes use of DNS TXT record queries and responses to create a bidirectional Command and Control (C2) channel. This allows the attacker to use DNS communications to submit new commands to be run on infected machines and return the results of the command execution to the attacker.


Family metadata imported from Malpedia (Fraunhofer FKIE).