Berbew
- First seen
- 2003-04-01 00:00:00
- Malware type
- backdoor
- Family
- Malware family
- Last IoC activity
- 2026-07-22 00:38:11
- Profile updated
- 2026-07-07 14:48:55
Targeted industries: government-and-public-sector
Targeted regions: country_code:us
Context
Berbew, also known as Padodor, is a backdoor Trojan that installs itself on a system to enable remote access by an attacker. It is primarily used to harvest sensitive data and manipulate infected systems covertly.
Detection coverage
- 1 YARA rules
Detection rules
- EMBEERESEARCH_Win_Berbew_Strings_Dec_2023 (yara-rule)
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Win.Berbew (report)
- blog.sonicwall.com — Berbew Backdoor Spotted In The Wild (report)