24просмотров
0.7%от подписчиков
28 марта 2026 г.
Score: 26
#ParsedReport #CompletenessHigh
28-03-2026 CrySome RAT : An Advanced Persistent .NET Remote Access Trojan https://www.cyfirma.com/research/crysome-rat-an-advanced-persistent-net-remote-access-trojan/ Report completeness: High Threats:
Crysomerat
Av-killer
Hvnc_tool
Costura_tool
Credential_harvesting_technique Victims:
Windows systems, Security products Industry:
Healthcare TTPs:
Tactics: 6
Technics: 0 IOCs:
File: 12
Hash: 2
Command: 1
Domain: 1 Soft:
Chrome, Windows service, Microsoft Defender, Windows registry, Windows Defender, Telegram Algorithms:
sha256 Functions:
RegisterHandlers, GetDrivesRequest, GetDirectoryRequest, ReadFileRequest, DeleteFileRequest, GetProcessListRequest, GetAudioDevicesPacket, GetCameraDevicesPacket, GetScreensRequest, Install, have more... Languages:
powershell YARA: Found