Threat Group Cards: A Threat Actor Encyclopedia Archived: 2026-04-05 18:25:16 UTC Home > List all groups > List all tools > List all groups using tool DarkVNC Tool: DarkVNC Names DarkVNC Category Malware Type Backdoor Description (Talos) DarkVNC attempts to connect to the C2 server using the TCP port 8080, likely to be less suspicious as this is one of the default ports for connections to HTTP proxies. Information Malpedia Last change to this tool card: 27 December 2022 Download this tool card in JSON format All groups using tool DarkVNC Changed Name Country Observed Other groups   TA554 [Unknown] 2017   1 group listed (0 APT, 1 other, 0 unknown) Source: https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=345160e8-d7a0-482c-84da-5353ae011161 https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=345160e8-d7a0-482c-84da-5353ae011161 Page 1 of 1