Threat Group Cards: A Threat Actor Encyclopedia Archived: 2026-04-05 16:05:18 UTC Home > List all groups > List all tools > List all groups using tool BackConfig Tool: BackConfig Names BackConfig Category Malware Type Backdoor Description (Palo Alto) The BackConfig custom trojan has a flexible plug-in architecture for components offering various features, including the ability to gather system and keylog information and to upload and execute additional payloads. Information MITRE ATT&CK Malpedia AlienVault OTX Last change to this tool card: 30 December 2022 Download this tool card in JSON format All groups using tool BackConfig Changed Name Country Observed APT groups Donot Team 2016-Oct 2024 Operation HangOver, Monsoon, Viceroy Tiger 2010-Jan 2020 https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=9e58e0b0-208b-4d8d-aedf-78ab08f9e340 Page 1 of 2 2 groups listed (2 APT, 0 other, 0 unknown) Source: https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=9e58e0b0-208b-4d8d-aedf-78ab08f9e340 https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=9e58e0b0-208b-4d8d-aedf-78ab08f9e340 Page 2 of 2