Blog | G5 Cyber Security

Crimson RAT (Malware Family)

Rule win_crimson_auto is autogenerated rule brought to you by yara-signator. Malpedia is used as data source, only single samples are documented. The code and documentation will be published in the near future here: https://github.com/fxb-cocacoding/yara-Signator. The strings used in this rule have been automatically selected from the disassembly of memory dumps and unpacked files, using yara.caad.fkie.de.”]

Source: https://malpedia.caad.fkie.fraunhofer.de/details/win.crimson

Exit mobile version