Skip to content

Malware

KOMPROGO

aka Splinter RAT

KOMPROGO is a signature backdoor used by APT32 that is capable of process, file, and registry management, Creating a reverse shell, running WMI queries, retrieving information about the infected syste

KOMPROGO, also known as Splinter RAT, is a Windows malware family operated by APT32.

Background

KOMPROGO is a hallmark backdoor of APT32 that can handle process, file, and registry management, spawn a reverse shell, execute WMI queries, and gather details about the compromised host.


Source: Malpedia (Fraunhofer FKIE).