Malware
Reaver
Reaver is a type of malware discovered by researchers at Palo Alto Networks in November 2017, but its activity dates back to at least late 2016.
Reaver is a Windows malware family.
Background
Reaver was first documented by Palo Alto Networks researchers in November 2017, though its operations trace back to at least the end of 2016. Only ten distinct samples were found, pointing to limited deployment, spread across three variants labeled versions 1, 2, and 3. A distinctive trait is that its final payload disguises itself as a control panel link (CPL) file. The targets remained unknown at the time of analysis, but the malware ran alongside SunOrcal and reused the same C2 infrastructure operated by actors who chiefly pursue the "Five Poisons" - five groups the Chinese government regards as threats to its interests.
Source: Malpedia (Fraunhofer FKIE).