SYMBOLCOMMON_NAMEaka. SYNONYMS
win.netdooka (Back to overview)

NetDooka


A RAT written in .NET, delivered with a driver to protect it from deletion. Observed being dropped by PrivateLoader.

References
2022-05-05Trend MicroAliakbar Zahravi, Leandro Froes, Trend Micro Research
NetDooka Framework Distributed via PrivateLoader Malware as Part of Pay-Per-Install Service
NetDooka PrivateLoader

There is no Yara-Signature yet.