Jumcar. Peruvian navy? Who could be behind it? [Third part]
We know that the family of malware called Trojan.MSIL.Jumcar and Trojan.Win32.Jumcar was developed in Peru with the primary aim of attacking Peruvian users. We also know that Chilean and Peruvian users have latterly been targeted as well. You can read more about this in our preliminary reports:
During the initial investigation we saw a very striking series of strings from the source code of the first variants: “Armada Peruana“. This is the Peruvian navy.
String “Armada Peruana” observed in decompilation of the Jumcar variant.