Malware Intelligence
Technical write-ups, reverse engineering breakdowns, and verified indicators of compromise (IOCs) for active malware families, loaders, RATs, stealers, and ransomware payloads.
LoaderHIGH
StealCraft Loader
Target Platforms:
Windows 10/11 x64Enterprise AD Nodes
SpywareHIGH
ClearTrack Spyware
Target Platforms:
Android 13+iOS 17+
RATCRITICAL
ShadowRAT Botnet
Target Platforms:
Windows Server 2022Linux x86_64
StealerHIGH
PDF QuickView Stealer
Target Platforms:
Chrome Extension EngineChromium Browsers
Privilege EscalationHIGH
PwnKit-v2 PrivEsc Exploit
Target Platforms:
Linux (Ubuntu, Debian, RHEL)
Ransomware PayloadCRITICAL
NocturnLock Encryptor
Target Platforms:
Windows ServerVMware ESXi
Ransomware PayloadCRITICAL
VortexRansom Payload
Target Platforms:
Windows 11 x64Windows Server 2022
StealerHIGH
KryptonStealer v4
Target Platforms:
Windows 10/11Chrome/Edge/Brave
LoaderHIGH
CobaltDrop Loader
Target Platforms:
Enterprise WorkstationsActive Directory Domains
SpywareCRITICAL
PegasusLite Mobile Spyware
Target Platforms:
iOS 17+Android 14
Privilege EscalationHIGH
DirtyPipe-v3 Exploit
Target Platforms:
Linux Kernel 5.16-6.8
RATMEDIUM
AsyncBackdoor RAT
Target Platforms:
Windows 10/11 x86_64
StealerHIGH
RedLine Stealer v24
Target Platforms:
Windows 10/11 x64Chrome / Edge / Firefox
LoaderHIGH
GhostImpulser Loader
Target Platforms:
Windows Server 2022Windows 11
Ransomware PayloadCRITICAL
BlackCat-v4 Ransomware
Target Platforms:
VMware ESXiLinux x86_64Windows x64
Have a suspicious file or malware sample?
Submit suspicious executables, PCAP captures, or memory dumps for automated sandboxing and analysis by Threxar Intel.
Submit Sample →