Skip to content

Malware Intelligence

Technical write-ups, reverse engineering breakdowns, and verified indicators of compromise (IOCs) for active malware families, loaders, RATs, stealers, and ransomware payloads.

LoaderHIGH

StealCraft Loader

Target Platforms:
Windows 10/11 x64Enterprise AD Nodes
SpywareHIGH

ClearTrack Spyware

Target Platforms:
Android 13+iOS 17+
RATCRITICAL

ShadowRAT Botnet

Target Platforms:
Windows Server 2022Linux x86_64
StealerHIGH

PDF QuickView Stealer

Target Platforms:
Chrome Extension EngineChromium Browsers
Privilege EscalationHIGH

PwnKit-v2 PrivEsc Exploit

Target Platforms:
Linux (Ubuntu, Debian, RHEL)
Ransomware PayloadCRITICAL

NocturnLock Encryptor

Target Platforms:
Windows ServerVMware ESXi
Ransomware PayloadCRITICAL

VortexRansom Payload

Target Platforms:
Windows 11 x64Windows Server 2022
StealerHIGH

KryptonStealer v4

Target Platforms:
Windows 10/11Chrome/Edge/Brave
LoaderHIGH

CobaltDrop Loader

Target Platforms:
Enterprise WorkstationsActive Directory Domains
SpywareCRITICAL

PegasusLite Mobile Spyware

Target Platforms:
iOS 17+Android 14
Privilege EscalationHIGH

DirtyPipe-v3 Exploit

Target Platforms:
Linux Kernel 5.16-6.8
RATMEDIUM

AsyncBackdoor RAT

Target Platforms:
Windows 10/11 x86_64
StealerHIGH

RedLine Stealer v24

Target Platforms:
Windows 10/11 x64Chrome / Edge / Firefox
LoaderHIGH

GhostImpulser Loader

Target Platforms:
Windows Server 2022Windows 11
Ransomware PayloadCRITICAL

BlackCat-v4 Ransomware

Target Platforms:
VMware ESXiLinux x86_64Windows x64
Have a suspicious file or malware sample?

Submit suspicious executables, PCAP captures, or memory dumps for automated sandboxing and analysis by Threxar Intel.

Submit Sample →