Skip to content

Malware

GRAYRABBIT

According to Mandiant, GRAYRABBIT is a lightweight and simple backdoor that supports simple file operation, system information collection, running modularized plugins, and executing a remote command s

GRAYRABBIT is a Windows malware family operated by UNC3569.

Background

Mandiant characterizes GRAYRABBIT as a small, straightforward backdoor whose capabilities include basic file handling, gathering system information, loading modular plugins, and providing a remote command shell.


Source: Malpedia (Fraunhofer FKIE).