: Look for unauthorized RDP or AnyDesk connections.
: Uses "living-off-the-land" techniques (using real Windows tools to hide). ✅ Recommended Actions
: Typically Windows systems via phishing or malicious downloads.
This report summarizes the characteristics, origins, and security status of the file . 🛡️ Security Summary Risk Level : High
you interacted with the file (downloaded vs. opened)
: Identified as a malware loader (likely tied to the "Cinnamon Curry" campaign).
If you'd like more specific details to help secure your machine:
Get monthly behaviour change content and insights
Check out our Monash University accredited courses, along with our short and bespoke training programs.


We offer a broad range of research services to help governments, industries and NGOs find behavioural solutions.

We believe in building capacity and sharing knowledge through multiple channels to our partners, collaborators and the wider community.