| | | Broomstick | ['CLEANBOOST', 'CleanUp', 'CleanUpLoader', 'Oyster'] | win.broomstick | [] | 2024-07-25 | | | |
| | | SHATTEREDGLASS | ['Unidentified 081'] | win.shatteredglass | ['Silent Chollima'] | 2024-07-26 | | | |
| | | Rhadamanthys | [] | win.rhadamanthys | ['Sandworm'] | 2024-07-25 | | | |
| | | NetSupportManager RAT | ['NetSupport'] | win.netsupportmanager_rat | [] | 2024-07-25 | | | |
| | | DBatLoader | ['ModiLoader', 'NatsoLoader'] | win.dbatloader | [] | 2024-07-25 | | | |
| | | LockBit | ['ABCD Ransomware'] | win.lockbit | [] | 2024-07-25 | | | |
| | | Rhysida | [] | win.rhysida | [] | 2024-07-25 | | | |
| | | Joker | ['Bread'] | apk.joker | [] | 2024-07-24 | | | |
| | | BRATA | ['AmexTroll', 'Copybara'] | apk.brata | [] | 2024-07-24 | | | |
| | | DOPLUGS | [] | win.doplugs | [] | 2024-07-24 | | | |
| | | PlugX | ['Destroy RAT', 'Kaba', 'Korplug', 'Sogu', 'TIGERPLUG', 'RedDelta'] | win.plugx | ['APT 22', 'APT 26', 'APT31', 'APT41', 'Aurora Panda', 'Calypso group', 'DragonOK', 'EMISSARY PANDA', 'Hellsing', 'Hurricane Panda', 'Leviathan', 'Mirage', 'Mustang Panda', 'NetTraveler', 'Nightshade Panda', 'SLIME29', 'Samurai Panda', 'Stone Panda', 'UPS', 'Violin Panda'] | 2024-07-24 | | | |
| | | WindTail | [] | osx.windtail | ['WindShift'] | 2020-04-08 | | | |
| | | JSOutProx | [] | win.jsoutprox | ['SOLAR SPIDER'] | 2024-04-08 | | | |
| | | Latrodectus | ['BLACKWIDOW', 'IceNova', 'Latrodectus', 'Lotus'] | win.lactrodectus | [] | 2024-07-19 | | | |
| | | LODEINFO | [] | win.lodeinfo | ['MirrorFace'] | 2024-07-24 | | | |
| | | SimpleTea | [] | osx.simpletea | ['Lazarus Group'] | 2024-07-24 | | | |
| | | Anel | ['UPPERCUT', 'lena'] | win.anel | ['Stone Panda'] | 2024-07-24 | | | |
| | | Cobalt Strike | ['Agentemis', 'BEACON', 'CobaltStrike', 'cobeacon'] | win.cobalt_strike | ['APT 29', 'APT32', 'APT41', 'AQUATIC PANDA', 'Anunak', 'Cobalt', 'Codoso', 'CopyKittens', 'DarkHydrus', 'FIN6', 'FIN7', 'Leviathan', 'Mustang Panda', 'Shell Crew', 'Stone Panda', 'TianWu', 'UNC1878', 'UNC2452', 'Winnti Umbrella'] | 2024-07-24 | | | |
| | | NOOPDOOR | ['HiddenFace'] | win.noopdoor | ['MirrorFace'] | 2024-07-24 | | | |
| | | Zergeca | [] | elf.zergeca | [] | 2024-07-24 | | | |
| | | Lumma Stealer | ['LummaC2 Stealer'] | win.lumma | [] | 2024-07-24 | | | |
| | | Vidar | [] | win.vidar | [] | 2024-07-24 | | | |
| | | RedLine Stealer | ['RECORDSTEALER'] | win.redline_stealer | [] | 2024-07-24 | | | |
| | | Crimson RAT | ['SEEDOOR', 'Scarimson'] | win.crimson | ['Operation C-Major'] | 2024-07-23 | | | |
| | | FAKEUPDATES | ['FakeUpdate', 'SocGholish'] | js.fakeupdates | ['GOLD PRELUDE'] | 2024-07-22 | | | |
| | | Mirai | ['Katana'] | elf.mirai | [] | 2024-07-22 | | | |
| | | Hook | [] | apk.hook | [] | 2024-07-22 | | | |
| | | Coper | ['ExobotCompact', 'Octo'] | apk.coper | [] | 2024-07-22 | | | |
| | | Bashlite | ['gayfgt', 'Gafgyt', 'qbot', 'torlus', 'lizkebab'] | elf.bashlite | [] | 2024-07-22 | | | |
| | | FluBot | ['Cabassous', 'FakeChat'] | apk.flubot | [] | 2024-07-22 | | | |
| | | AsyncRAT | [] | win.asyncrat | [] | 2024-07-22 | | | |
| | | BianLian | [] | win.bianlian | [] | 2024-07-22 | | | |
| | | DCRat | ['DarkCrystal RAT'] | win.dcrat | [] | 2024-07-22 | | | |
| | | QakBot | ['Oakboat', 'Pinkslipbot', 'Qbot', 'Quakbot'] | win.qakbot | ['GOLD CABIN'] | 2024-07-22 | | | |
| | | Quasar RAT | ['CinaRAT', 'QuasarRAT', 'Yggdrasil'] | win.quasar_rat | ['APT33', 'Dropping Elephant', 'Stone Panda', 'The Gorgon Group'] | 2024-07-22 | | | |
| | | NjRAT | ['Bladabindi', 'Lime-Worm'] | win.njrat | ['AQUATIC PANDA', 'Earth Lusca', 'Operation C-Major', 'The Gorgon Group'] | 2024-07-22 | | | |
| | | Havoc | ['Havokiz'] | win.havoc | [] | 2024-07-22 | | | |
| | | Remcos | ['RemcosRAT', 'Remvio', 'Socmer'] | win.remcos | ['APT33', 'The Gorgon Group', 'UAC-0050'] | 2024-07-22 | | | |
| | | RisePro | [] | win.risepro | [] | 2024-07-22 | | | |
| | | Sliver | [] | win.sliver | [] | 2024-07-22 | | | |
| | | 9002 RAT | ['McRAT', 'Hydraq', 'HOMEUNIX'] | win.9002 | ['Aurora Panda', 'APT31', 'Group 27'] | 2024-07-22 | | | |
| | | XWorm | [] | win.xworm | [] | 2024-07-21 | | | |
| | | WINELOADER | [] | win.wineloader | ['APT29'] | 2024-07-19 | | | |
| | | HesperBot | [] | win.hesperbot | [] | 2024-07-19 | | | |
| | | Akira | [] | win.akira | [] | 2024-07-17 | | | |
| | | DarkGate | ['Meh', 'MehCrypter'] | win.darkgate | [] | 2024-07-17 | | | |
| | | StrelaStealer | [] | win.strelastealer | [] | 2024-07-17 | | | |
| | | Poseidon Stealer | ['Rodrigo Stealer'] | osx.poseidonstealer | [] | 2024-07-17 | | | |
| | | Pelmeni | [] | win.pelmeni | ['Turla'] | 2024-07-17 | | | |
| | | Cerberus | [] | apk.cerberus | [] | 2024-07-16 | | | |
| | | Kematian Stealer | [] | win.kematian | [] | 2024-07-10 | | | |
| | | Hodur | [] | win.hodur | ['MUSTANG PANDA'] | 2024-07-10 | | | |
| | | WarmCookie | ['Badspace', 'QUICKBIND'] | win.warmcookie | [] | 2024-07-10 | | | |
| | | Phobos | [] | win.phobos | [] | 2024-07-10 | | | |
| | | Zebrocy (AutoIT) | [] | win.zebrocy_au3 | ['APT28'] | 2024-07-10 | | | |
| | | Zebrocy | ['Zekapab'] | win.zebrocy | ['APT28'] | 2024-07-10 | | | |
| | | X-Agent | ['splm', 'chopstick'] | win.xagent | ['APT28'] | 2024-07-10 | | | |
| | | Seduploader | ['jhuhugit', 'jkeyskw', 'downrage', 'carberplike', 'GAMEFISH'] | win.seduploader | ['APT28'] | 2024-07-10 | | | |
| | | X-Agent | ['splm', 'chopstick', 'fysbis'] | elf.xagent | ['APT28'] | 2024-07-10 | | | |
| | | HijackLoader | ['DOILoader', 'GHOSTPULSE', 'IDAT Loader', 'SHADOWLADDER'] | win.hijackloader | [] | 2024-06-24 | | | |
| | | Koi Loader | [] | win.koiloader | [] | 2024-07-10 | | | |
| | | Koi Stealer | [] | win.koistealer | [] | 2024-07-10 | | | |
| | | Cutlet | [] | win.cutlet | [] | 2022-04-25 | | | |
| | | FlashBack | ['FakeFlash'] | osx.flashback | [] | 2024-07-08 | | | |
| | | XenoRAT | [] | win.xenorat | [] | 2024-07-08 | | | |
| | | PovertyStealer | [] | win.poverty | [] | 2024-07-08 | | | |
| | | csharp-streamer RAT | [] | win.csharpstreamer | [] | 2024-06-28 | | | |
| | | badbazaar | [] | apk.badbazaar | ['APT15'] | 2024-07-03 | | | |
| | | SquidLoader | [] | win.squidloader | [] | 2024-07-03 | | | |
| | | Tsunami | ['Muhstik', 'Radiation', 'Amnesia'] | elf.tsunami | [] | 2024-06-28 | | | |
| | | Brute Ratel C4 | ['BruteRatel'] | win.brute_ratel_c4 | [] | 2024-06-28 | | | |
| | | 404 Keylogger | ['404KeyLogger', 'Snake Keylogger'] | win.404keylogger | [] | 2024-07-03 | | | |
| | | EugenLoader | ['FakeBat', 'PaykLoader'] | ps1.eugenloader | ['APOTHECARY SPIDER', 'Storm-1113'] | 2024-07-03 | | | |
| | | DICELOADER | ['Lizar'] | win.diceloader | [] | 2024-07-03 | | | |
| | | Carbanak | ['Anunak', 'Sekur RAT'] | win.carbanak | ['FIN7'] | 2024-07-03 | | | |
| | | Royal Ransom | ['Royal_unix', 'Royal'] | elf.royal_ransom | [] | 2024-07-03 | | | |
| | | BlackCat | ['ALPHV', 'Noberus'] | elf.blackcat | [] | 2024-07-03 | | | |
| | | SmokeLoader | ['Dofoil', 'Sharik', 'Smoke', 'Smoke Loader'] | win.smokeloader | ['SMOKY SPIDER'] | 2024-07-03 | | | |
| | | SectopRAT | ['1xxbot', 'ArechClient'] | win.sectop_rat | [] | 2024-07-03 | | | |
| | | Gozi | ['CRM', 'Gozi CRM', 'Papras', 'Snifula', 'Ursnif'] | win.gozi | [] | 2024-07-03 | | | |
| | | IcedID | ['BokBot', 'IceID'] | win.icedid | ['GOLD CABIN', 'Lunar Spider'] | 2024-07-03 | | | |
| | | Pikabot | [] | win.pikabot | [] | 2024-07-03 | | | |
| | | Proton RAT | ['Calisto'] | osx.proton_rat | [] | 2024-07-01 | | | |
| | | Agent Tesla | ['AgenTesla', 'AgentTesla', 'Negasteal'] | win.agent_tesla | ['SWEED'] | 2024-06-28 | | | |
| | | Ave Maria | ['AVE_MARIA', 'AveMariaRAT', 'Warzone RAT', 'WarzoneRAT', 'avemaria'] | win.ave_maria | ['Anunak'] | 2024-06-28 | | | |
| | | Azorult | ['PuffStealer', 'Rultazo'] | win.azorult | ['The Gorgon Group'] | 2024-06-28 | | | |
| | | BitRAT | [] | win.bit_rat | [] | 2024-06-28 | | | |
| | | Nanocore RAT | ['Nancrat', 'NanoCore'] | win.nanocore | ['APT33', 'The Gorgon Group'] | 2024-06-28 | | | |
| | | NetWire RC | ['NetWeird', 'NetWire', 'Recam'] | win.netwire | ['APT33'] | 2024-06-28 | | | |
| | | Loki Password Stealer (PWS) | ['Burkina', 'Loki', 'LokiBot', 'LokiPWS'] | win.lokipws | ['SWEED', 'The Gorgon Group', 'Cobalt'] | 2024-06-28 | | | |
| | | HawkEye Keylogger | ['HawkEye', 'HawkEye Reborn', 'Predator Pain'] | win.hawkeye_keylogger | [] | 2024-06-28 | | | |
| | | Formbook | ['win.xloader'] | win.formbook | ['SWEED', 'Cobalt'] | 2024-06-28 | | | |
| | | GaboonGrabber | [] | win.gaboongrabber | [] | 2024-06-28 | | | |
| | | CrackedCantil | [] | win.crackedcantil | [] | 2024-03-27 | | | |
| | | ZhMimikatz | [] | win.zhmimikatz | ['Cleaver'] | 2020-01-20 | | | |
| | | Wave Stealer | [] | win.wavestealer | [] | 2024-06-28 | | | |
| | | Chalubo | ['ChaChaDDoS'] | elf.chalubo | [] | 2024-06-28 | | | |
| | | SSLoad | [] | win.ssload | ['TA578'] | 2024-06-28 | | | |
| | | Medusa | ['Gorgona'] | apk.medusa | [] | 2024-06-28 | | | |
| | | TangleBot | [] | apk.tangle_bot | [] | 2024-06-28 | | | |