Malware
Remcos RAT
- First Reported
- Sep 25, 2026
- Latest Reported
- Sep 28, 2026
Reported Context (3)
- At this point, the loader operates by receiving the C2 server address—from which it will download the Remcos RAT—as an argument value. Phishing Emails Use Fake Purchase Requests to Deliver Remcos RAT
- The decrypted and executed payload downloads Remcos RAT—the final piece of malware—from the C2 server into memory. Phishing Quote Requests Deliver Remcos RAT via Obfuscated PowerShell
- Usato inoltre per veicolare i malware BingoMod, PureLogs Stealer, RemControl, Remcos e XWorm. CERT-AGID Reports 182 Malicious Campaigns Affecting Italy During September 19–25
CVE (1)
Malware (12)
MITRE ATT&CK (15)
Vendors (1)
Products (2)
Industries (2)
Countries (2)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.