Skip to content

Incidents attributed to:

ProCC

ProCC is a threat actor targeting the hospitality sector with remote access Trojan malware.

ProCC is a threat actor targeting the hospitality sector with remote access Trojan malware. They use email attachments to exploit vulnerabilities like CVE-2017-0199 and deploy customized versions of RATs such as RevengeRAT, NjRAT, NanoCoreRAT, and 888 RAT. ProCC's malware is capable of collecting data from the clipboard and printer spooler, as well as capturing screenshots on infected machines.

References


Actor metadata imported from Malpedia (Fraunhofer FKIE).