SODAMASTER

SODAMASTERSodaMaster

Description

This is a RAT that is usually loaded with one or more shellcode and/or reflective DLL injection techniques. The RAT uses RC4 or a hardcoded RSA key for traffic encryption/decryption. Its communication can either happen via a raw TCP socket or a HTTP POST request. Depending on the version, the RAT may remotely execute DLLs or shellcode.

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Software
TSCookieRAT
Software
SocketPlayer
Software
RadRAT
Software
4H RAT
Software
PCClient RAT
Software
PoisonIvy
Sourced from MITRE ATT&CK Enterprise . Curated by Adam Lundqvist, SQUR.