PUMPKINBAR (9df0243f-61f5-45da-b8d8-9f61e78242ec)
PUMPKINBAR is a C/C++ dropper. PUMPKINBAR can contain multiple payloads encoded and embedded within itself. The key to decode each payload is appended at the end of the PUMPKINBAR executable. The payloads are dropped to disk and executed. Availability: Non-public
Cluster A | Galaxy A | Cluster B | Galaxy B | Level |
---|---|---|---|---|
APT43 (aac49b4e-74e9-49fa-84f9-e340cf8bafbc) | Threat Actor | PUMPKINBAR (9df0243f-61f5-45da-b8d8-9f61e78242ec) | Tool | 1 |