Milum
Description
(Kaspersky) The malware uses the JSON format for configuration data and as a C2 communication protocol over HTTP as well. Inside the encrypted communications within the HTTP POST requests, we found several interesting fields. One of them shows the malware version – 1.0.1. A version number like this indicates an early stage of development. Other fields suggest the existence of, at the very least, plans for non-C++ versions.
Names
Name |
---|
Milum |
Category
Malware
Type
- Backdoor
Information
Malpedia
Other Information
Uuid
db64813a-5c1e-4d3d-9688-286cbe4c6ef0
Last Card Change
2021-04-24