Binanen

First seen
2021-04-10 00:00:00
Malware type
dropper, spyware
Family
Malware family
Profile updated
2026-07-07 12:51:14

Targeted industries: government-and-public-sector technology-and-telecommunications financial-services

Context

Binanen is a dropper that drops and executes a section of itself into a hidden dummy process. According to F-Secure, it executes command line tools such as (for example) asipconfig, which is useful to retrieve the network configuration. The malware aims to steal information about the machine, the username, installed software and, more generally speaking, it potentially can carry out actions on the compromised machine.

Reports & references

  • secureworks.com — Bronze Fleetwood (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Binanen (report)
  • sophos.com — Detailed Analysis (report)

External references