PingBack

First seen
2019-08-12 00:00:00
Malware type
rat, backdoor
Family
Malware family
Profile updated
2026-07-07 14:43:19

Targeted industries: government-and-public-sector technology-and-telecommunications

Targeted regions: country_code:us country_code:cn

Context

PingBack is a Remote Access Trojan (RAT) known for providing attackers with backdoor access to compromised systems. It has been primarily observed targeting governmental and technology sectors.

Detection coverage

  • 1 YARA rules

Detection rules

  • DITEKSHEN_MALWARE_Win_Pingback (yara-rule)

Reports & references

  • blog.apnic.net — How To Detect And Prevent Common Data Exfiltration Attacks (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Pingback (report)
  • trustwave.com — Backdoor At The End Of The Icmp Tunnel (report)

External references