New TeleBots backdoor links Industroyer to NotPetya for first time
released on 2018-10-11 @ 06:10:33 PM
In April 2018, ESET discovered new activity from the TeleBots group: an attempt to deploy a new backdoor, which ESET detects as Win32/Exaramel. Our analysis suggests that this TeleBots’ backdoor is an improved version of the main Industroyer backdoor – the first piece of evidence that was missing.