CapraRat
Malware family · 1 sample(s) · 2 indicator record(s) · 1 signing certificate(s)
About CapraRat
Android RAT used by Transparent Tribe (a.k.a. APT36, Earth Karkaddan, ProjectM) against targets in India and Pakistan. Typically single-application spyware delivered via social engineering, with screen capture, call/SMS exfiltration and audio recording.
Indicators
| Indicator | Type | Sample | First seen |
|---|---|---|---|
| shareboxs.net:12182 | domain | d62705186c48… | 2019-04-27 |
| 80.241.209.53:12182 | ip | d62705186c48… | 2019-04-27 |