#QUICKRIDE
Malware/Tool
2018-10-03 • APT38 Un-usual Suspects
QUICKRIDE is a backdoor reported in APT38 operations and detected as Backdoor.APT.QUICKRIDE. It establishes persistence through the Windows Startup folder and communicates with its command-and-control server over HTTPS using a static HTTP User-Agent string. Its documented functions include gathering information about the compromised system, downloading and loading executable files, and uninstalling itself. The cited APT38 report states that QUICKRIDE was used against banks in Poland.
-
1
Tagged Reports
-
1
Unique Authors
-
1
Active Days