Skip to content

Malware

SquirtDanger

According to PaloAlto, SquirtDanger is a commodity botnet malware family that comes equipped with a number of characteristics and capabilities.

SquirtDanger is a Windows malware family.

Background

Palo Alto reports that SquirtDanger is a commodity botnet family packing a variety of features and traits. Written in C# (C Sharp), it consists of several layers of embedded code. After executing on a host, it stays resident through a scheduled task configured to run every minute. For its network traffic, SquirtDanger relies on raw TCP connections to a remote command and control (C2) server.


Source: Malpedia (Fraunhofer FKIE).