4h_rat

First seen
2018-05-15 00:00:00
Malware type
rat
Profile updated
2026-07-07 12:35:24

Targeted industries: government-and-public-sector financial-services technology-and-telecommunications

Targeted regions: country_code:us country_code:ru country_code:cn

Context

4h_rat is a remote access tool used for cyber espionage, primarily targeting government, financial, and technology sectors. It has been observed in campaigns targeting regions such as the US, Russia, and China.

Reports & references

  • MITRE ATT&CK — G0024 (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.4H Rat (report)
  • github.com — Crowdstrike Intelligence Report Putter Panda.Original (report)
  • cocomelonc.github.io — Simple Malware Av Evasion (report)
  • cocomelonc.github.io — Malware Trick 36 (report)

External references