TF-MAL-apk.viper_rat
📛 Threat Title
Malware family: Viper RAT
Description
ThreatFox malware family `apk.viper_rat`. Printable name: Viper RAT.
Indicators of Compromise (0)
No indicators of compromise on this threat.
References (1)
- ThreatFox: IOCs for this family ThreatFox Malwares
Remediations (10)
-
web:assets.kpmg.com
The malware primarily targets individuals and enterprises in regions such as South Korea, Australia, Japan, the United States, and Southeast Asia, posing serious risks to cryptocurrency users and organizations. ViperSoftX infiltrates systems through trojanized software cracks, activators, and key generators that users unknowingly execute.
-
web:cujo.com
ViperSoftX is a family of highly sophisticated malware , employing a wide range of evasion techniques and complex communication strategies.
-
web:cyberpress.org
This telemetry is sent to threat actors for further exploitation or lateral targeting. Multi-Stage Payload Delivery ViperSoftX frequently acts as a conduit for additional malware . Notably, it downloads and launches open-source threats like Quasar RAT a remote access trojan with keylogging and credential theft capabilities.
-
web:cybersecuritynews.com
A sophisticated malware campaign utilizing the notorious ViperSoftX malware has been targeting users through cracked software.
-
web:malpedia.caad.fkie.fraunhofer.de
Details for the Viper RAT malware family including references, samples and yara signatures.
-
web:rewterz.com
A newly discovered variant of the ViperSoftX malware family emerged in early 2025, representing a significant shift in both tactics and sophistication. This PowerShell-based stealer showcases a high degree of modularity, stealth, and resilience, signaling a departure from its earlier, more basic 2024 version.
-
web:threatfox.abuse.ch
ThreatFox Database Indicators of Compromise (IOCs) on ThreatFox are associated with a certain malware fas. A malware sample can be associated with only one malware family . The page below gives you an overview on indicators of compromise associated with apk. viper_rat . You can also get this data through the ThreatFox API. Database Entry
-
web:www.bsi.bund.de
The malware is able to redirect cryptocurrency transactions by replacing the target address in the clipboard or in input forms in the browser. After infection, the bot can also drop other malware and provide the attackers with full control over the infected system. How did I get infected with ViperSoftX?
-
web:www.darktrace.com
What is ViperSoftX? ViperSoftX is an information stealer and Remote Access Trojan ( RAT ) malware known to steal privileged information such as cryptocurrency wallet addresses and password information stored in browsers and password managers.
-
web:www.pcrisk.com
What is the ViperSoftX RAT ? ViperSoftX is a JavaScript-based Remote Access Trojan ( RAT ). Malware of this type allows stealthy remote access and control over an infected machine. These Trojans can have a wide variety of dangerous functionality, which enables likewise varied misuse of the compromised device. The primary purpose of ViperSoftX is stealing cryptocurrency transactions, however, it ...
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.