SHA1 hash:
- 17e29f7e82d6999fc5037fd9024a207e9297d3a2
Description
A utility for the remote administration of Windows-based computers, also known as Remcos RAT. It has wide functionality and allows target computers to be controlled remotely and have various actions performed on them. Threat actors often use this tool for malicious purposes. This is why Dr.Web anti-virus detects it as a trojan app.
Remcos RAT can:
- create screenshots;
- search and manage files stored on a computer;
- download files onto a computer;
- intercept keystrokes (keylogger functionality);
- use a computer’s webcam;
- execute commands remotely;
- access browser history;
- use a computer's microphone to listen to the surroundings;
- remotely reboot or turn off a computer;
- edit the Windows registry;
- remotely install and uninstall programs;
- launch additional modules;
- launch a proxy server;
- manage running programs;
- display preassigned messages;
- load preassigned websites;
- install updates of the tool, and
- perform a number of other actions.