| | | FAKEUPDATES | ['FakeUpdate', 'SocGholish'] | js.fakeupdates | ['GOLD PRELUDE'] | 2025-02-21 | | | |
| | | RokRAT | ['DOGCALL'] | win.rokrat | ['APT37'] | 2025-02-21 | | | |
| | | Lumma Stealer | ['LummaC2 Stealer'] | win.lumma | [] | 2025-02-21 | | | |
| | | GhostSocks | [] | win.ghostsocks | [] | 2025-02-21 | | | |
| | | BeaverTail | [] | js.beavertail | ['WageMole'] | 2025-02-21 | | | |
| | | InvisibleFerret | [] | py.invisibleferret | ['WageMole'] | 2025-02-21 | | | |
| | | NailaoLocker | [] | win.nailao_locker | [] | 2025-02-20 | | | |
| | | PlugX | ['Destroy RAT', 'Kaba', 'Korplug', 'Sogu', 'TIGERPLUG', 'RedDelta'] | win.plugx | ['APT 22', 'APT 26', 'APT31', 'APT41', 'Aurora Panda', 'Calypso group', 'DragonOK', 'EMISSARY PANDA', 'Hellsing', 'Hurricane Panda', 'Leviathan', 'Mirage', 'Mustang Panda', 'NetTraveler', 'Nightshade Panda', 'SLIME29', 'Samurai Panda', 'Stone Panda', 'UPS', 'Violin Panda'] | 2025-02-20 | | | |
| | | ShadowPad | ['POISONPLUG.SHADOW', 'XShellGhost'] | win.shadowpad | ['APT23', 'APT41', 'APT17', 'DAGGER PANDA', 'Earth Lusca', 'Tonto Team', 'WET PANDA'] | 2025-02-20 | | | |
| | | EvilExtractor | [] | win.evilextractor | [] | 2025-02-20 | | | |
| | | Cring | [] | win.cring | [] | 2025-02-20 | | | |
| | | ValleyRAT | ['Winos'] | win.valley_rat | [] | 2025-02-20 | | | |
| | | ElizaRAT | [] | win.eliza_rat | ['Operation C-Major'] | 2025-02-19 | | | |
| | | Anel | ['UPPERCUT', 'lena'] | win.anel | ['Stone Panda'] | 2025-02-19 | | | |
| | | Cobalt Strike | ['Agentemis', 'BEACON', 'CobaltStrike', 'cobeacon'] | win.cobalt_strike | ['APT 29', 'APT32', 'APT41', 'AQUATIC PANDA', 'Anunak', 'Cobalt', 'Codoso', 'CopyKittens', 'DarkHydrus', 'Earth Baxia', 'FIN6', 'FIN7', 'Leviathan', 'Mustang Panda', 'Shell Crew', 'Stone Panda', 'TianWu', 'UNC1878', 'UNC2452', 'Winnti Umbrella'] | 2025-02-19 | | | |
| | | NOOPDOOR | ['HiddenFace'] | win.noopdoor | ['MirrorFace'] | 2025-02-19 | | | |
| | | LODEINFO | [] | win.lodeinfo | ['MirrorFace'] | 2025-02-19 | | | |
| | | COOKBOX | [] | ps1.cookbox | ['UAC-0149'] | 2025-02-19 | | | |
| | | SparkRAT | [] | win.spark_rat | [] | 2025-02-19 | | | |
| | | DarkSide | [] | elf.darkside | [] | 2025-02-19 | | | |
| | | DarkSide | ['BlackMatter'] | win.darkside | [] | 2025-02-19 | | | |
| | | SMOKEDHAM | [] | win.smokedham | [] | 2025-02-19 | | | |
| | | LockBit | ['ABCD Ransomware'] | win.lockbit | [] | 2025-02-19 | | | |
| | | Nitrogen Loader | [] | win.nitrogen | [] | 2025-02-13 | | | |
| | | RansomHub | [] | win.ransomhub | ['RansomHub'] | 2025-02-19 | | | |
| | | SECONDDATE | [] | elf.seconddate | [] | 2025-02-19 | | | |
| | | Marcher | ['ExoBot'] | apk.marcher | [] | 2025-02-19 | | | |
| | | FrigidStealer | [] | osx.frigid_stealer | [] | 2025-02-19 | | | |
| | | Unidentified 120 | [] | win.unidentified_120 | [] | 2025-02-19 | | | |
| | | magecart | [] | js.magecart | ['FIN6', 'MageCart'] | 2025-02-18 | | | |
| | | Rhadamanthys | [] | win.rhadamanthys | ['Sandworm'] | 2025-02-18 | | | |
| | | ReedBed | [] | win.reedbed | [] | 2025-02-18 | | | |
| | | Moisha Ransomware | [] | win.moisha | [] | 2025-02-18 | | | |
| | | tsunami | [] | win.tsunami | ['Lazarus Group'] | 2025-02-10 | | | |
| | | OtterCookie | [] | js.otter_cookie | ['WageMole'] | 2025-02-17 | | | |
| | | BlankGrabber | [] | py.blankgrabber | [] | 2025-02-18 | | | |
| | | FINALDRAFT | [] | elf.finaldraft | [] | 2025-02-17 | | | |
| | | FINALDRAFT | [] | win.finaldraft | [] | 2025-02-17 | | | |
| | | PATHLOADER | [] | win.pathloader | [] | 2025-02-17 | | | |
| | | BACKORDER | [] | win.backorder | ['Sandworm'] | 2025-02-17 | | | |
| | | Kalambur | [] | ps1.kalambur | ['Sandworm'] | 2025-02-17 | | | |
| | | DCRat | ['DarkCrystal RAT'] | win.dcrat | [] | 2025-02-17 | | | |
| | | AsyncRAT | [] | win.asyncrat | [] | 2025-02-17 | | | |
| | | XWorm | [] | win.xworm | [] | 2025-02-17 | | | |
| | | NjRAT | ['Bladabindi', 'Lime-Worm'] | win.njrat | ['AQUATIC PANDA', 'Earth Lusca', 'Operation C-Major', 'The Gorgon Group'] | 2025-02-17 | | | |
| | | OCEANMAP | [] | win.oceanmap | ['APT28'] | 2025-02-17 | | | |
| | | Headlace | [] | win.headlace | [] | 2025-02-17 | | | |
| | | MASEPIE | [] | py.masepie | ['APT28'] | 2025-02-17 | | | |
| | | HATVIBE | [] | vbs.hatvibe | ['UAC-0063'] | 2025-02-17 | | | |
| | | CredoMap | [] | win.credomap | ['APT28'] | 2025-02-17 | | | |
| | | MooBot | [] | elf.moobot | [] | 2025-02-17 | | | |
| | | STEELHOOK | [] | ps1.steelhook | ['APT28'] | 2025-02-17 | | | |
| | | Black Basta | ['no_name_software'] | win.blackbasta | ['Storm-0506', 'TA2101', 'UNC4393'] | 2025-02-17 | | | |
| | | DarkGate | ['Meh', 'MehCrypter'] | win.darkgate | [] | 2025-02-17 | | | |
| | | Lynx | [] | win.lynx | [] | 2025-02-17 | | | |
| | | SmartLoader | [] | win.smartloader | [] | 2025-02-17 | | | |
| | | BumbleBee | ['COLDTRAIN', 'SHELLSTING', 'Shindig'] | win.bumblebee | ['EXOTIC LILY', 'GOLD CABIN', 'TA578', 'TA579'] | 2025-01-14 | | | |
| | | TelePowerBot | [] | win.telepowerbot | [] | 2025-02-13 | | | |
| | | KamiKakaBot | ['Kami'] | win.kami | [] | 2025-02-13 | | | |
| | | Luxy | [] | win.luxy | [] | 2025-02-13 | | | |
| | | GoRed | [] | win.go_red | ['ExCobalt'] | 2025-02-13 | | | |
| | | LocalOlive | [] | asp.localolive | ['Sandworm'] | 2025-02-13 | | | |
| | | Antidot | [] | apk.antidot | [] | 2025-02-12 | | | |
| | | CMS8000 Backdoor | [] | elf.cms8000_backdoor | [] | 2025-02-11 | | | |
| | | PureLogs Stealer | [] | win.purelogs | [] | 2025-02-03 | | | |
| | | Latrodectus | ['BLACKWIDOW', 'IceNova', 'Latrodectus', 'Lotus'] | win.latrodectus | [] | 2025-02-10 | | | |
| | | BlackCat | ['ALPHV', 'Noberus'] | win.blackcat | [] | 2025-02-10 | | | |
| | | Brute Ratel C4 | ['BOLDBADGER', 'BruteRatel'] | win.brute_ratel_c4 | [] | 2025-02-10 | | | |
| | | Parite | [] | win.parite | [] | 2025-02-10 | | | |
| | | php.shin_webshell | [] | php.shin_webshell | [] | 2025-02-10 | | | |
| | | Unidentified PS 005 (Telegram Bot) | [] | ps1.unidentified_005 | ['YoroTrooper'] | 2025-02-10 | | | |
| | | Simda | ['iBank'] | win.simda | [] | 2025-02-10 | | | |
| | | Creal Stealer | [] | py.creal_stealer | [] | 2025-02-10 | | | |
| | | Sshdinjector | [] | elf.sshdinjector | [] | 2025-02-10 | | | |
| | | BADBOX | [] | apk.badbox | [] | 2025-02-10 | | | |
| | | SmokeLoader | ['Dofoil', 'Sharik', 'Smoke', 'Smoke Loader'] | win.smokeloader | ['SMOKY SPIDER', 'UAC-0006'] | 2025-02-10 | | | |
| | | INC | [] | elf.inc | [] | 2025-02-06 | | | |
| | | FlexibleFerret | [] | osx.flexibleferret | ['WageMole'] | 2025-02-04 | | | |
| | | FriendlyFerret | [] | osx.friendlyferret | ['WageMole'] | 2025-02-04 | | | |
| | | FrostyFerret | [] | osx.frostyferret | ['WageMole'] | 2025-02-04 | | | |
| | | Satacom | ['CurlyGate', 'LegionLoader', 'RobotDropper'] | win.satacom | [] | 2025-02-04 | | | |
| | | FrostyGoop | ['BUSTLEBERM'] | win.frostygoop | [] | 2025-02-04 | | | |
| | | KillDisk | [] | win.killdisk | ['Sandworm', 'TeleBots'] | 2025-02-03 | | | |
| | | Ozone RAT | [] | win.ozone | [] | 2025-02-03 | | | |
| | | Monokle | [] | apk.monokle | [] | 2025-02-03 | | | |
| | | CraxsRAT | [] | apk.craxs_rat | [] | 2025-02-03 | | | |
| | | Pronsis Loader | [] | jar.pronsis_loader | [] | 2025-02-03 | | | |
| | | reGeorg | [] | win.regeorg | [] | 2025-02-03 | | | |
| | | MimiKatz | [] | win.mimikatz | ['APT32', 'Anunak', 'GALLIUM'] | 2025-02-03 | | | |
| | | WhisperGate | ['PAYWIPE'] | win.whispergate | [] | 2025-02-03 | | | |
| | | RedLine Stealer | ['RECORDSTEALER'] | win.redline_stealer | [] | 2025-02-03 | | | |
| | | SystemBC | ['Coroxy', 'DroxiDat'] | win.systembc | [] | 2025-02-01 | | | |
| | | DownEx | [] | win.downex | ['UAC-0063'] | 2025-02-01 | | | |
| | | SystemBC | [] | elf.systembc | [] | 2025-02-01 | | | |
| | | Stealc | [] | win.stealc | [] | 2025-01-31 | | | |
| | | MintsLoader | [] | js.mints_loader | [] | 2025-01-31 | | | |
| | | POISONPLUG | ['Barlaiy'] | win.poisonplug | ['APT41'] | 2025-01-30 | | | |
| | | BeaverTail | [] | osx.beavertail | [] | 2025-01-30 | | | |
| | | SNAPPYBEE | ['Deed RAT', 'POISONPLUG.DEED'] | win.snappybee | ['Earth Estries'] | 2025-01-30 | | | |
| | | INDUSTROYER2 | [] | win.industroyer2 | ['Sandworm'] | 2025-01-29 | | | |