S0144Windows
S0144ChChes
Platforms
1
ATT&CK
14.1
References
6
Description
[ChChes](https://attack.mitre.org/software/S0144) is a Trojan that appears to be used exclusively by [menuPass](https://attack.mitre.org/groups/G0045). It was used to target Japanese organizations in 2016. Its lack of persistence methods suggests it may be intended as a first-stage tool. (Citation: Palo Alto menuPass Feb 2017) (Citation: JPCERT ChChes Feb 2017) (Citation: PWC Cloud Hopper Technical Annex April 2017)
Platforms· 1
Windows
Attributed to1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Group | menuPassg0045 | 100% | live |
References
- https://attack.mitre.org/software/S0144
- https://twitter.com/ItsReallyNick/status/850105140589633536
- https://www.fireeye.com/blog/threat-research/2017/04/apt10_menupass_grou.html
- http://researchcenter.paloaltonetworks.com/2017/02/unit42-menupass-returns-new-malware-new-attacks-japanese-academics-organizations/
- http://blog.jpcert.or.jp/2017/02/chches-malware--93d6.html
- https://www.pwc.co.uk/cyber-security/pdf/pwc-uk-operation-cloud-hopper-technical-annex-april-2017.pdf
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.