Home Malware Programs Malware Tonnerre Malware

Tonnerre Malware

Posted: February 11, 2021

The Tonnerre Malware is a hacking tool used by criminals from the Infy Advanced Persistent Threat (APT) group. The criminals that are part of this organization are believed to originate from Iran, and the majority of their attacks are focused on political, media, and business targets in the Middle East. The Tonnerre Malware was involved in a recent attack, which saw it being used as a secondary implant – victims were usually infiltrated by the Foudre Malware, which later deployed a copy of Tonnerre.

The Tonnerre Malware is written in Delphi, and it features a modular structure that enables its operators to only deploy the modules they wish to use. Furthermore, it allows them to expand or shrink its functionality on-the-fly, therefore modifying the threatening executable all the time. Some of Tonnerre Malware's core features allow that it include:

  • Record computer sound via the microphone.
  • Capture desktop screenshots, or snaps of specific windows.
  • Execute remote commands.
  • Collect files.

The Tonnerre Malware is unlikely to be employed in attacks against regular users since the Infy APT appears to only be interested in high-profile targets. Even elite malware attacks like this one are preventable with the use of up-to-date anti-virus software.

Loading...