Berbew

First seen
2003-04-01 00:00:00
Malware type
backdoor
Family
Malware family
Last IoC activity
2026-07-22 00:38:11
Profile updated
2026-07-07 14:48:55

Targeted industries: government-and-public-sector

Targeted regions: country_code:us

Context

Berbew, also known as Padodor, is a backdoor Trojan that installs itself on a system to enable remote access by an attacker. It is primarily used to harvest sensitive data and manipulate infected systems covertly.

Detection coverage

  • 1 YARA rules

Detection rules

  • EMBEERESEARCH_Win_Berbew_Strings_Dec_2023 (yara-rule)

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Berbew (report)
  • blog.sonicwall.com — Berbew Backdoor Spotted In The Wild (report)

External references