AGENT-ORM

AGENT-ORMAgent ORM

Description

Agent ORM began circulating alongside Skeur in campaigns throughout the second half of 2015. The malware collects basic system information and is able to take screenshots of victim systems. It is used to download next-stage payloads when systems of interest are identified. It is strongly suspected that Agent ORM has been deprecated in favor of script-based first-stage implants (VB Flash, JS Flash, and Bateleur).

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Software
VB Flash
Software
Odinaff
Software
Ordinypt
Software
ODDJOB
Actor
Water Orthrus
Software
Torisma
Sourced from MITRE ATT&CK Enterprise . Curated by Adam Lundqvist, SQUR.