SYMBOLCOMMON_NAMEaka. SYNONYMS
win.xcaon (Back to overview)

xCaon


Checkpoint Research found this backdoor, attributed to IndigoZebra, used to target Afghan and other Central-Asia countries, including Kyrgyzstan and Uzbekistan, since at least 2014.

References
2021-07-01Check PointCheck Point Research
IndigoZebra APT continues to attack Central Asia with evolving tools
BoxCaon xCaon IndigoZebra

There is no Yara-Signature yet.