Description
[Revenge RAT](https://attack.mitre.org/software/S0379) is a freely available remote access tool written in .NET (C#).(Citation: Cylance Shaheen Nov 2018)(Citation: Cofense RevengeRAT Feb 2019)
External References
Techniques Used by This Malware
- T1003 — OS Credential Dumping
- T1016 — System Network Configuration Discovery
- T1021.001 — Remote Desktop Protocol
- T1033 — System Owner/User Discovery
- T1053.005 — Scheduled Task
- T1056.001 — Keylogging
- T1059.001 — PowerShell
- T1059.003 — Windows Command Shell
- T1082 — System Information Discovery
- T1102.002 — Bidirectional Communication
- T1105 — Ingress Tool Transfer
- T1113 — Screen Capture
- T1123 — Audio Capture
- T1125 — Video Capture
- T1132.001 — Standard Encoding
- T1202 — Indirect Command Execution
- T1218.005 — Mshta
- T1547.004 — Winlogon Helper DLL