⚠
Dark Crystal RAT
rat2 mutex signatures
[BASIC_INFORMATION]
FAMILY_NAME:
Dark Crystal RAT
CATEGORY:
RAT
DESCRIPTION:
Dark Crystal RAT (DCRat) is a Russian-developed remote access trojan that provides attackers with extensive control over compromised systems. It is sold as a commercial RAT and has been used in various cybercriminal campaigns. The malware uses specific mutexes to ensure single instance execution and coordinate its activities.
ALIASES:
DCRat
TAGS:
remote_accesscommercial_ratrussian_originbackdoorwindows
[MUTEX_SIGNATURES](2)
[MUTEX_01]
DCR_MUTEX-<20_random_alphanumeric_characters>
ANALYST: @adhikara13 DATE: 2024-12-19
[MUTEX_02]
DcRatMutex_qwqdanchun
ANALYST: @adhikara13 DATE: 2024-07-19
[QUICK_ACTIONS]
[THREAT_INTELLIGENCE]
ATTRIBUTION:
⚠Unknown
FIRST_OBSERVED:
2022
[SIGMA_RULE]
[STATISTICS]
MUTEX_COUNT:2
THREAT_ACTORS:1
ALIASES:1
TAGS:5
CATEGORY:RAT
Malware profile loaded successfully