CREDRIVER

Description

(Rapid7) This backdoor has several features including:

  1. Steal credentials from Internet Explorer
  2. Steal credentials from Mozilla Firefox
  3. Install a keylogger for intercepting credentials on Google Chrome
  4. Operate in an interactive mode to allow the attacker to perform additional investigation on the compromised system and exfiltrate data.

Names

Name
CREDRIVER

Category

Malware

Type

  • Reconnaissance
  • Backdoor
  • Credential stealer
  • Keylogger
  • Info stealer
  • Exfiltration

Information

Other Information

Uuid

065b3682-0730-4c0c-a11a-a1c57ced10f1

Last Card Change

2020-04-20