Atharvan

First seen
2022-06-15 00:00:00
Malware type
rat
Family
Malware family
Profile updated
2026-07-07 14:46:11

Targeted industries: government-and-public-sector defense-and-aerospace

Targeted regions: country_code:in country_code:us

Context

Atharvan is a remote access tool primarily used for cyber espionage, targeting government and defense sectors. It is known to infiltrate systems in India and the United States to extract sensitive information.

Detection coverage

  • 3 YARA rules

Detection rules

  • SEKOIA_Rat_Win_Atharvan (yara-rule)
  • SIGNATURE_BASE_MAL_APT_NK_Andariel_Atharvan_3RAT (yara-rule)
  • MALPEDIA_Win_Atharvan_Auto (yara-rule)

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Atharvan (report)
  • Broadcom/Symantec — Clasiopa Materials Research (report)

External references