Skip to content

RAT

KHRAT

According to Unit42, KHRAT is a Trojan that registers victims using their infected machine’s username, system language and local IP address.

KHRAT is a Windows rat operated by DragonOK.

Background

Unit42 reports that KHRAT is a trojan which registers each victim based on the infected host's username, system language, and local IP address. It grants operators the standard set of RAT capabilities and access to the compromised machine, such as keylogging, screen capture, and remote shell access.


Source: Malpedia (Fraunhofer FKIE).