Zox RAT

GPTKB entity

Statements (24)
Predicate Object
gptkbp:instanceOf Remote Access Trojan
gptkbp:abilities credential theft
command execution
screen capture
file exfiltration
keylogging
gptkbp:alsoKnownAs Zox Remote Access Trojan
gptkbp:detects various antivirus vendors
gptkbp:distributedBy phishing emails
malicious attachments
malicious links
gptkbp:firstReported 2019
https://www.w3.org/2000/01/rdf-schema#label Zox RAT
gptkbp:platform gptkb:Windows
gptkbp:programmingLanguage gptkb:.NET
gptkbp:removes gptkb:security
manual removal
gptkbp:riskFactor high
gptkbp:supportsProtocol C2 server
gptkbp:usedBy cybercriminals
gptkbp:usedFor remote control of infected computers
gptkbp:usesMalware RAT
gptkbp:bfsParent gptkb:APT25
gptkbp:bfsLayer 8