| | | poweRAT | [] | py.powerat | [] | 2023-02-21 | | | |
| | | Venus Stealer | [] | py.venus_stealer | [] | 2023-02-21 | | | |
| | | win.beep | [] | win.beep | [] | | | | |
| | | Janicab | [] | osx.janicab | ['Evilnum'] | 2023-02-21 | | | |
| | | BLINDTOAD | [] | win.blindtoad | ['Lazarus Group'] | 2023-02-21 | | | |
| | | OxtaRAT | [] | win.oxtarat | [] | 2023-02-17 | | | |
| | | Bobik | [] | win.bobik | [] | 2023-02-17 | | | |
| | | Zeppelin | [] | win.zeppelin | [] | 2023-02-15 | | | |
| | | ESXiArgs | [] | elf.esxi_args | [] | 2023-02-13 | | | |
| | | Paradies Clipper | [] | win.paradies_clipper | [] | 2023-02-09 | | | |
| | | ColdStealer | [] | win.coldstealer | [] | 2023-02-06 | | | |
| | | AmpleBot | ['BlackRock'] | apk.amplebot | [] | 2022-03-14 | | | |
| | | Reveton | [] | win.reveton | [] | 2021-02-04 | | | |
| | | SEADADDY | ['SeaDuke', 'Seadask'] | win.seadaddy | ['APT29'] | 2022-03-14 | | | |
| | | LNKR | [] | js.lnkr | [] | 2023-02-06 | | | |
| | | Bifrost | ['elf.bifrose'] | elf.bifrost | ['BlackTech'] | 2023-02-06 | | | |
| | | Saitama Backdoor | ['AMATIAS', 'Saitama'] | win.saitama | ['OilRig'] | 2023-02-03 | | | |
| | | HelloKitty | [] | elf.hellokitty | [] | 2023-02-03 | | | |
| | | Hive (Vault 8) | [] | elf.vault8_hive | ['Longhorn'] | 2023-02-02 | | | |
| | | Cold$eal | ['ColdSeal'] | win.coldseal | [] | 2020-11-26 | | | |
| | | Alien | ['AlienBot'] | apk.alien | [] | 2023-01-05 | | | |
| | | Unidentified VBS 004 (RAT) | [] | vbs.unidentified_004 | ['MuddyWater'] | 2023-01-25 | | | |
| | | xdr33 | [] | elf.xdr33 | [] | 2023-01-25 | | | |
| | | IronNetInjector | [] | win.ironnetinjector | [] | 2023-01-25 | | | |
| | | TerraPreter | [] | win.terrapreter | [] | 2023-01-25 | | | |
| | | TerraLoader | [] | win.terra_loader | [] | 2023-01-25 | | | |
| | | VenomLNK | [] | win.venom_lnk | [] | 2023-01-25 | | | |
| | | Deimos | [] | win.deimos | [] | 2023-01-19 | | | |
| | | PRIVATELOG | [] | win.privatelog | [] | 2022-05-09 | | | |
| | | ROLLCOAST | ['Sabbath', 'S4bb47h', 'Arcane'] | win.rollcoast | [] | 2023-01-19 | | | |
| | | Triton | ['Trisis', 'HatMan'] | win.triton | ['XENOTIME'] | 2023-01-19 | | | |
| | | RapperBot | [] | elf.rapper_bot | [] | 2023-01-19 | | | |
| | | Apostle | [] | win.apostle | [] | 2023-01-19 | | | |
| | | StoneDrill | [] | win.stonedrill | ['Charming Kitten'] | 2023-01-19 | | | |
| | | Ordinypt | ['GermanWiper', 'HSDFSDCrypt'] | win.ordinypt | [] | 2023-01-19 | | | |
| | | Meteor | [] | win.meteor | [] | 2023-01-19 | | | |
| | | IsraBye | [] | win.israbye | [] | 2023-01-19 | | | |
| | | BotenaGo | [] | elf.botenago | [] | 2023-01-19 | | | |
| | | Luna | [] | elf.luna | [] | 2023-01-13 | | | |
| | | DarkTortilla | [] | win.darktortilla | [] | 2023-01-05 | | | |
| | | Ekipa RAT | [] | win.ekipa | [] | 2023-01-05 | | | |
| | | win.sunnyday | [] | win.sunnyday | [] | | | | |
| | | MintStealer | [] | win.mintstealer | [] | 2023-01-04 | | | |
| | | TianySpy | [] | apk.tianyspy | [] | 2023-01-02 | | | |
| | | EvilQuest | ['ThiefQuest'] | osx.evilquest | [] | 2023-01-02 | | | |
| | | Loki | [] | apk.loki | [] | 2022-12-29 | | | |
| | | Meterpreter | [] | apk.meterpreter | [] | 2022-12-24 | | | |
| | | FastFire | [] | apk.fastfire | ['Kimsuky'] | 2022-12-20 | | | |
| | | FastSpy | [] | apk.fastspy | ['Kimsuky'] | 2022-12-20 | | | |
| | | SigLoader | [] | win.sigloader | [] | 2022-12-20 | | | |
| | | Kami | [] | win.kami | [] | 2022-12-20 | | | |
| | | ServHelper | [] | win.servhelper | ['TA505'] | 2022-12-20 | | | |
| | | AESRT | [] | win.aesrt | [] | 2022-12-19 | | | |
| | | Janicab | [] | vbs.janicab | ['Evilnum'] | 2022-12-14 | | | |
| | | Chaos | [] | elf.chaos | [] | 2022-12-14 | | | |
| | | CreepySnail | [] | win.creepysnail | ['POLONIUM'] | 2022-12-12 | | | |
| | | CreepExfil | [] | win.creep_exfil | ['POLONIUM'] | 2022-12-12 | | | |
| | | MegaCreep | [] | win.megacreep | ['POLONIUM'] | 2022-10-12 | | | |
| | | CyclopsBlink | [] | elf.cyclops_blink | [] | 2022-12-12 | | | |
| | | KoiVM | [] | win.koivm | [] | 2022-12-05 | | | |
| | | BlueFox | [] | win.bluefox | [] | 2022-12-05 | | | |
| | | PsiX | ['PsiXBot'] | win.psix | [] | 2022-11-28 | | | |
| | | STARWHALE | ['Canopy', 'SloughRAT'] | vbs.starwhale | ['MuddyWater'] | 2022-12-02 | | | |
| | | Cobian RAT | [] | win.cobian_rat | [] | 2022-12-01 | | | |
| | | COZYDUKE | ['CozyCar', 'Cozer', 'CozyBear', 'EuroAPT'] | win.cozyduke | ['APT29'] | 2022-12-01 | | | |
| | | win.unidentified_063 | [] | win.unidentified_063 | [] | | | | |
| | | magecart | [] | js.magecart | ['FIN6', 'MageCart'] | 2022-11-23 | | | |
| | | AXLocker | [] | win.axlocker | [] | 2022-11-21 | | | |
| | | Inlock | [] | win.inlock | [] | 2022-11-21 | | | |
| | | dnWipe | [] | win.dnwipe | [] | 2022-11-21 | | | |
| | | NominatusToxicBattery | [] | win.nominatus_toxic_battery | [] | 2022-11-21 | | | |
| | | DBoxAgent | [] | win.dboxagent | ['APT41'] | 2022-11-18 | | | |
| | | SerialVlogger | [] | win.serialvlogger | ['APT41'] | 2022-11-18 | | | |
| | | Charger | [] | apk.charger | [] | 2022-11-18 | | | |
| | | Caja | [] | elf.caja | ['APT32'] | 2022-11-15 | | | |
| | | MiniDuke | [] | win.miniduke | ['APT29'] | 2022-11-15 | | | |
| | | neshta | [] | win.neshta | [] | 2022-11-15 | | | |
| | | ShellLocker | [] | win.shelllocker | [] | 2022-11-15 | | | |
| | | Bizzaro | [] | win.bizarro | [] | 2022-11-15 | | | |
| | | CoViper | [] | win.coviper | [] | 2022-11-15 | | | |
| | | CopperStealer | ['Mingloa'] | win.copper_stealer | [] | 2022-11-15 | | | |
| | | LimePad | [] | win.limepad | ['Operation C-Major'] | 2022-11-12 | | | |
| | | RapidStealer | [] | win.rapid_stealer | ['IXESHE'] | 2022-11-12 | | | |
| | | Gwisin | [] | win.gwisin | [] | 2022-11-11 | | | |
| | | RatMilad | [] | apk.ratmilad | [] | 2022-11-09 | | | |
| | | StealthWorker Go | [] | win.stealthworker | [] | 2022-11-09 | | | |
| | | Apollo | [] | win.apollo | [] | 2022-11-05 | | | |
| | | AnchorDNS | [] | elf.anchor_dns | [] | 2022-11-03 | | | |
| | | win.pyfiledel | [] | win.pyfiledel | [] | 2022-11-03 | | | |
| | | Fodcha | [] | elf.fodcha | [] | 2022-11-01 | | | |
| | | FurBall | [] | apk.furball | ['Domestic Kitten'] | 2022-10-30 | | | |
| | | Trump Bot | [] | elf.trump_bot | [] | 2022-10-25 | | | |
| | | GamePlayerFramework | [] | win.game_player_framework | [] | 2022-10-25 | | | |
| | | Icarus | [] | win.icarus | [] | 2022-10-14 | | | |
| | | BluStealer | ['a310logger'] | win.blustealer | [] | 2022-06-09 | | | |
| | | TeamSpy | ['TVSPY', 'TeamViewerENT', 'TVRAT'] | win.teamspy | [] | 2022-10-14 | | | |
| | | AllcomeClipper | [] | win.allcomeclipper | [] | 2022-10-14 | | | |
| | | DeepCreep | [] | win.deepcreep | ['POLONIUM'] | 2022-10-12 | | | |
| | | Unidentified 097 (Polonium Keylogger) | [] | win.unidentified_097 | ['POLONIUM'] | 2022-10-12 | | | |
| | | RedAlert Ransomware | ['N13V'] | elf.red_alert | [] | 2022-10-10 | | | |