SSLove RAT

Description

(Qihoo 360) The main features of the Android sample in this attack are as follows:

• Get contact • Get SMS • Get location • Get WhatsApp chathistory • Get call history • Get file list • Upload file • Get device information • Get account information • Take a photo

In the process of stealing privacy, SSlove RAT uses a remote SQL Server database to store stolen information such as contacts, text messages, location, WhatsApp chat records, and uploads images, audios, and other files to its FTP server.

Names

Name
SSLove RAT

Category

Malware

Type

  • Reconnaissance
  • Backdoor
  • Info stealer
  • Exfiltration

Information

Other Information

Uuid

fd4b91f1-bacf-484e-a03d-9f013a88f85f

Last Card Change

2020-04-20