balletspistol

First seen
2021-06-15 00:00:00
Malware type
trojan, backdoor
Profile updated
2026-07-07 13:55:02

Targeted industries: government-and-public-sector energy-and-utilities financial-services

Context

Balletspistol is a sophisticated Trojan that provides attackers with unauthorized remote access to affected systems. It is primarily used for data exfiltration and can establish a command and control channel to execute additional payloads or exfiltrate sensitive information.

Reports & references

  • ransomlook.io — Balletspistol (report)
  • tinextacyber.com — Dissecting A Python Ransomware Distributed Through Github Repositories 1 (report)

External references