[ALL_FAMILIES]

BADNEWS

rat2 mutex signatures

[BASIC_INFORMATION]

FAMILY_NAME:
BADNEWS
CATEGORY:
RAT
DESCRIPTION:
BADNEWS is a Remote Access Trojan (RAT) that has been used by the White Elephant APT group (also known as Patchwork or APT-C-35) in various espionage campaigns.
ALIASES:
BADNEWS RAT
TAGS:
remote_accessinfostealerc2apt

[QUICK_ACTIONS]

[THREAT_INTELLIGENCE]

ATTRIBUTION:
White Elephant
Patchwork
FIRST_OBSERVED:
2013

[SIGMA_RULE]

[STATISTICS]

MUTEX_COUNT:2
THREAT_ACTORS:2
ALIASES:1
TAGS:4
CATEGORY:RAT
Malware profile loaded successfully

EvilMutex Project v1.0.0

Open Source Threat Intelligence Database