Posted by malvuln on May 18

Discovery / credits: Malvuln – (c) 2021
Original source:
Contact: malvuln13 () gmail com

Threat: Backdoor.Win32.Danton.43
Vulnerability: MITM Port Bounce Scan
Description: The backdoor FTP server listens on TCP port 6974, hardcoding
weak plaintext credentials within the executable. Third-party adversaries
who successfully logon can abuse…
