3PARA RAT

MITRE ATT&CK: S0066 View on attack.mitre.org

Aliases: 3PARA RAT

First seen
2013-05-01 00:00:00
Malware type
rat
Family
Malware family
Operating systems
windows
Profile updated
2026-07-07 15:46:41

Targeted industries: defense-and-aerospace government-and-public-sector

Targeted regions: country_code:us country_code:cn

Context

3PARA RAT is a remote access tool (RAT) programmed in C++ that has been used by Putter Panda.

Detection coverage

  • 58 Sigma rules

Malware & tools used

  • Symmetric Cryptography (attack-pattern)
  • Web Protocols (attack-pattern)
  • File and Directory Discovery (attack-pattern)
  • Timestomp (attack-pattern)

Used by threat actors

Reports & references

  • cdn0.vox-cdn.com — Crowdstrike Intelligence Report Putter Panda.Original (report)
  • MITRE ATT&CK — S0066 (report)
  • books.google.fr — Books (report)

External references