TF-MAL-py.amnesia_rat
📛 Threat Title
Malware family: Amnesia RAT
Description
ThreatFox malware family `py.amnesia_rat`. Printable name: Amnesia RAT.
Indicators of Compromise (0)
No indicators of compromise on this threat.
References (1)
- ThreatFox: IOCs for this family ThreatFox Malwares
Remediations (10)
-
web:aviatrix.ai
A 2026 phishing campaign in Russia used Amnesia RAT and ransomware, exploiting business document lures to breach, exfiltrate, and encrypt data across organizations.
-
web:grabify.org
The multi-stage phishing campaign targeting Russia, utilizing Amnesia RAT and ransomware, exemplifies the persistent and evolving nature of cyber threats. Adversaries are continually refining their social engineering tactics and technical payloads to maximize their impact.
-
web:malpedia.caad.fkie.fraunhofer.de
According to Fortinet, Amnesia RAT is written in Python and designed for broad, multi-category data theft combined with real-time surveillance and system control. Its capabilities include: Browser credentials and session data, Telegram Desktop session hijacking, Seed phrase discovery and clipboard monitoring, Discord and Steam data theft, Cryptocurrency wallets and financial assets, System and ...
-
web:malwaretips.com
A new multi-stage phishing campaign has been observed targeting users in Russia with ransomware and a remote access trojan called Amnesia RAT . The campaign leverages social engineering to distribute compressed archives, which contain multiple decoy documents and a malicious Windows shortcut (LNK) with Russian-language filenames.
-
web:news.lavx.hu
A new multi-stage phishing campaign has been observed targeting users in Russia with ransomware and a remote access trojan called Amnesia RAT . The attack begins with social engineering lures delivered via business-themed documents crafted to appear routine and benign. These documents and accompanying scripts serve as visual distractions, diverting victims to fake tasks or status messages while ...
-
web:redskyalliance.org
FortiGuard Labs recently identified a multi-stage malware campaign primarily targeting users in Russia. The attack begins with social engineering lures delivered via business-themed documents crafted to appear routine and benign. These documents and accompanying scripts serve as visual distractions, diverting victims to fake tasks or status messages while malicious activity runs silently in ...
-
web:securitricks.com
Check the new attack report here : Inside a Multi-Stage Windows Malware Campaign - social engineering, ransomware, windows, russia, data theft, hakuna matata, multi-stage, 2026-01-20, amnesia rat , defendnot
-
web:securityaffairs.com
A multi-stage phishing campaign targets users in Russia with ransomware and Amnesia RAT using fake business documents as lures. FortiGuard Labs researchers uncovered a multi-stage malware campaign mainly targeting users in Russia. The attack uses fake business documents as social engineering lures to distract victims while malware runs in the background. It escalates to full system compromise ...
-
web:thehackernews.com
A new multi-stage phishing campaign has been observed targeting users in Russia with ransomware and a remote access trojan called Amnesia RAT . "The attack begins with social engineering lures delivered via business-themed documents crafted to appear routine and benign," Fortinet FortiGuard Labs researcher Cara Lin said in a technical breakdown published this week. "These documents and ...
-
web:valitrix.com
This intricate attack vector employs a combination of social engineering tactics and malicious software, most notably the Amnesia Remote Access Trojan ( RAT ) and ransomware, to exploit unsuspecting victims. As cybercriminals continuously evolve their strategies, understanding these threats becomes crucial for individuals and organizations alike.
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.