CredRaptor

Description

(ESET) After successful compromise of the network, attackers use various malicious tools in order to collect passwords, allowing them to subsequently perform a lateral movement within the compromised LAN.

A string, that contains a PDB-path to debug symbols, suggests one such tool was named CredRaptor by the attackers. This tool collects saved passwords from various browsers such as Google Chrome, Internet Explorer, Mozilla Firefox, and Opera.

Names

Name
CredRaptor

Category

Malware

Type

  • Credential stealer

Information

Malpedia

Alienvault Otx

Other Information

Uuid

c076facc-c733-4ff3-8a62-450dd426fcea

Last Card Change

2020-05-13