ENGINEBOX-MALWARE

ENGINEBOX-MALWAREEngineBox Malware

Description

The main malware capabilities include a privilege escalation attempt using MS16–032 exploitation; a HTTP Proxy to intercept banking transactions; a backdoor to make it possible for the attacker to issue arbitrary remote commands and a C&C through a IRC channel. As it's being identified as a Generic Trojan by most of VirusTotal (VT) engines, let s name it EngineBox— the core malware class I saw after reverse engineering it.

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Software
LockBox
Software
template
Software
63256 botnet
Software
WEBC2-CLOVER
Software
TrickBot
Software
Suppobox
Sourced from MITRE ATT&CK Enterprise . Curated by Adam Lundqvist, SQUR.