Zergeca

Malware type
botnet, backdoor, ddos
Family
Malware family
Profile updated
2026-07-07 14:31:29

Context

Zergeca is a DDoS-botnet and backdoor written in Golang. It uses modified UPX for packing, with the magic number 0x30219101 instead of "UPX!". It is being distributed via weak telnet passwords and known vulnerabilities.

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Elf.Zergeca (report)
  • blog.xlab.qianxin.com — A Deep Dive Into The Zergeca Botnet (report)

External references