SNUGRIDE

Description

(FireEye) SNUGRIDE is a backdoor that communicates with its C2 server through HTTP requests. Messages are encrypted using AES with a static key. The malware’s capabilities include taking a system survey, access to the filesystem, executing commands and a reverse shell. Persistence is maintained through a Run registry key.

Names

Name
SNUGRIDE

Category

Malware

Type

  • Reconnaissance
  • Backdoor
  • Info stealer

Information

Mitre Attack

Other Information

Uuid

cc7180a9-4d8d-44fc-b9e0-118e0534a725

Last Card Change

2020-04-22