CrypticConvo

Malware type
dropper, trojan
Profile updated
2026-07-07 12:48:13

Targeted industries: government-and-public-sector technology-and-telecommunications

Context

CrypticConvo is a dropper trojan which appears to be embedded in an automatic generator framework to deliver the FakeM trojan. According to PaloaltoNetworks CrypticConvo and several additional trojans are believed to be included in a meta framework used by the "Scarlet Mimic" threat actor in order to quickly evade AV systems.

Reports & references

  • Palo Alto Unit 42 — Scarlet Mimic Years Long Espionage Targets Minority Activists (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Cryptic Convo (report)

External references