Remcos

MITRE
Tipo Malware:
Tool
Prima attivita:
Unknown
Ultima attivita:
Unknown
Dettagli:

[Remcos](https://attack.mitre.org/software/S0332) is a closed-source tool that is marketed as a remote control and surveillance software by a company called Breaking Security. [Remcos](https://attack.mitre.org/software/S0332) has been observed being used in malware campaigns.(Citation: Riskiq Remcos Jan 2018)(Citation: Talos Remcos Aug 2018)

Tecniche Associate (38)
ID ATT&CK Tattiche
T1010 Application Window Discovery -
T1012 Query Registry -
T1027 Obfuscated Files or Information -
T1027.013 Encrypted/Encoded File -
T1033 System Owner/User Discovery -
T1055 Process Injection -
T1056.001 Keylogging -
T1057 Process Discovery -
T1059.003 Windows Command Shell -
T1059.005 Visual Basic -
T1059.006 Python -
T1059.007 JavaScript -
T1070 Indicator Removal -
T1070.004 File Deletion -
T1082 System Information Discovery -
Metadata
ID: 738
Created: 13/01/2026 17:48
Updated: 06/06/2026 16:00