SNUGRIDE
Description
(FireEye) SNUGRIDE is a backdoor that communicates with its C2 server through HTTP requests. Messages are encrypted using AES with a static key. The malware’s capabilities include taking a system survey, access to the filesystem, executing commands and a reverse shell. Persistence is maintained through a Run registry key.
Names
Name |
---|
SNUGRIDE |
Category
Malware
Type
- Reconnaissance
- Backdoor
- Info stealer
Information
Mitre Attack
Other Information
Uuid
cc7180a9-4d8d-44fc-b9e0-118e0534a725
Last Card Change
2020-04-22