logo

New Malware Takes ‘Extended Naps’ To Avoid Detection

ID: d789575f-89a3-5057-bd2b-39a80ec720c7

STIX ID: report--d789575f-89a3-5057-bd2b-39a80ec720c7

Feed Name: Security Ledger

Threat Score
55/100

Date Published: 2013-02-05

Date Updated: 2026-05-08

Author: Paul Roberts

...
...

A FireEye report describes 'Trojan Nap', a Trojan Horse that uses a SleepEx() function to perform extended sleep cycles (default 600,000 ms / 10 minutes) to evade behavior-based detection and automated analysis; it also uses a fast-flux command-and-control network with domains observed on hosts in Latvia, Ukraine, Taiwan, Kazakhstan, and Pittsburgh, PA, and its dormancy mirrors APT-style tactics that complicate detection and attribution.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.