New, highly flexible downloader malware, dubbed Marap (param backwards), is notable for its focused functionality that includes the ability to download other modules and payloads. The malware is written in C and contains a few notable anti-analysis features. Marap uses HTTP for its C&C communication but first it tries a number of legitimate WinHTTP functions to determine whether it needs to use a proxy and if so what proxy to use. If the calculated sleep time is too short, the malware exits.”]
Source: https://hackercombat.com/marap-malware-targets-financial-institutions/

