Common Information
Type Value
Value
zgRAT
Category Tool
Type Malpedia
Misp Type Cluster
Description zgRAT is a Remote Access Trojan malware which sometimes drops other malware such as AgentTesla malware. zgRAT has an inforstealer use which targets browser information and cryptowallets. Usually spreads by USB or phishing emails with -zip/-lnk/.bat/.xlsx attachments and so on.
Details Published Attributes CTI Title
Details Website 2024-09-19 114 WebDAV-as-a-Service: Uncovering the infrastructure behind Emmenhtal loader distribution
Details Website 2024-09-06 0 CapLoader 1.9.7 Released
Details Website 2024-08-14 41 Multiple Malware Dropped Through MSI Package - SANS Internet Storm Center
Details Website 2024-02-07 10 Avast Q4/2023 Threat Report - Avast Threat Labs
Details Website 2024-01-10 28 From IRC to Instant Messaging: The Rise of Malware Communication via Chat Platforms | Datadog Security Labs
Details Website 2023-11-05 0 Discord will switch to temporary file links to block malware delivery - RedPacket Security
Details Website 2023-11-04 0 Discord will switch to temporary file links to block malware delivery
Details Website 2023-10-25 27 FakeUpdateRU Chrome Update Infection Spreads Trojan Malware
Details Website 2023-10-11 9 Discord, I Want to Play a Game
Details Website 2023-06-30 1 Monthly Updates New Detection Rules, Increased Threat Coverage
Details Website 2023-06-08 3 Malware Analysis News May 2023  
Details Website 2023-03-26 9 InfoSec Handlers Diary Blog - SANS Internet Storm Center
Details Website 2023-03-26 9 Extra: "String Obfuscation: Character Pair Reversal" - SANS Internet Storm Center
Details Website 2023-03-21 14 InfoSec Handlers Diary Blog - SANS Internet Storm Center
Details Website 2022-12-22 65 An infostealer comes to town: Dissecting a highly evasive malware targeting Italy
Details Website 2022-08-08 24 Life After Death—SmokeLoader Continues to Haunt Using Old Vulnerabilities