Ahtapot

First seen
2018-05-01 00:00:00
Malware type
botnet, rat
Family
Malware family
Profile updated
2026-07-07 14:43:21

Targeted industries: government-and-public-sector

Targeted regions: country_code:tr

Context

Ahtapot is a modular botnet and remote access trojan (RAT) primarily targeting financial institutions and government agencies in Turkey. It is capable of conducting various nefarious activities including data theft and espionage.

Detection coverage

  • 1 YARA rules

Detection rules

  • MALPEDIA_Win_Ahtapot_Auto (yara-rule)

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Ahtapot (report)
  • sentinelone.com — Sentinelone Sentinellabs Egomaniac Wp V4 (report)

External references