Skip to content

Malware

HyperBro

HyperBro is a RAT that has been observed to target primarily within the gambling industries, though it has been spotted in other places as well.

HyperBro is a Windows malware family operated by EMISSARY PANDA.

Background

HyperBro is a RAT seen mostly against the gambling sector, although it has turned up elsewhere too. It is generally made up of three or more parts: a) a legitimate loader that usually carries a signed certificate, b) a malicious DLL loader pulled in by the first part through DLL hijacking, and c) an encrypted, compressed blob that unpacks into a PE-based payload with its C2 details hardcoded inside.


Source: Malpedia (Fraunhofer FKIE).