kkRAT Malware - Remove Spyware & Malware with SpyHunter - EnigmaSoft Ltd
Summary
Security researchers uncovered a malware campaign built around a previously undocumented RAT called kkRAT. The attackers used phishing pages on GitHub Pages and fake installers to deliver a multi-stage payload chain with sandbox checks, BYOVD abuse, and DLL sideloading. The final payload supports remote control, screen capture, clipboard hijacking, proxying, and malware deployment, making the campaign capable of both theft and persistence. The report highlights how the operators can swap final payloads to adapt their tooling and evade detection.
Classifications
industries
Entertainment
applications
Customer Service & Support
AskAI Classifications
Labels
Cybersecurity Software
Anti-Malware Software
SaaS Security
Linked Companies
EnigmaSoft
$1M to $5M