Contenu disponible en langue originale
class="post-article">

ResolverRAT

ResolverRAT, 2021 yilinda saglik ve eczacilik sektorunu hedefleyen .NET tabanli bir RAT ailesidir. DLL side-loading, HTTPS C2, bellek icinde calistirma (fileless) ve Donut shellcode ile dagitim kullanir.

Profil de menace
Type RAT
Langage de programmation.NET/C#
Protocole C2HTTPS
Première détection2021
Cibles Saglik/Eczacilik Sektoru
Objectif / Capacités
  • Remote Access/Data Exfil
Aucun serveur C2 n'a encore été identifié pour cette famille.

Rapports de recherche (1)

Yüksek

ResolverRAT — Donut Shellcode Cozumlenmis .NET Payload, RC4 Benzeri Obfuske Anahtarlar | Yuksek

ResolverRAT donut_decrypted_netexe.bin. Donut shellcode ile sarmalanmis .NET payload, RC4 benzeri obfuske string anahtarlar.

Lire le rapport →