Hacking
500

New STRRAT RAT Phishing Campaign






  22-Jan-2022 02:02:58



STRRAT is a multi-capability Remote Access Trojan that dates to at least mid-2020. Unusually, it is Java-based and is typically delivered via phishing email to victims. Like most phishing attacks, previous STRAAT campaigns have used an intermediate dropper attached to the email that downloads the final payload when opened. This sample dispenses with that tactic and instead attaches the final payload directly to the phishing email.

REFERENCE:
https://www.fortinet.com/blog/threat-research/new-strrat-rat-phishing-campaign
MALWARE FAMILY:
STRRAT
ATT&CK IDS:
T1056 - Input CaptureT1193 - Spearphishing AttachmentT1137.001 - Office Template MacrosT1071 - Application Layer ProtocolT1219 - Remote Access SoftwareT1119 - Automated Collection


email [email protected]

email [email protected]

URL http://jbfrost.live/strigoi/server/?hwid=1&lid=m&ht=5

*Beware click the link!


DISCUSSION
Nothing comment here :(
Login for report, comment and join discussion
Login Here
Sponsored

Popular Posts
Gps Tracker Seccodeid Free Too...
General
21354
204
Top


Djie sam soe Djie sam soe
Complete Basic Course in Kali...
Linux
14373
4
Top


Djie sam soe Djie sam soe
Komintod (Ministry of Communic...
Data Leak
6511
94
Top


Murtad methamphetamine Murtad methamphetamine
Free Proxy List
Networking
3625
3
Top


Sandidi Sandidi
Mass Reverse IP Unlimited
Tools Hacking
3395
15
Top


ImamWawe ImamWawe

Related Post

Youtube Video

Subscribe