Breakthrough
- Malware type
- loader
- Family
- Malware family
- Last IoC activity
- 2026-06-09 20:40:16
- Profile updated
- 2026-07-07 14:50:30
Context
There is no reference available for this family and all known samples have version 1.0.0. Pdb-strings in the samples suggest that this is an "exclusive" loader, known as "breakthrough" (maybe), e.g. C:\Users\Exclusiv\Desktop\хп-пробив\Release\build.pdb The communication url parameters are pretty unique in this combination: gate.php?hwid=&os=&build=1.0.0&cpu=8 is one of: Windows95 Windows98 WindowsMe Windows95family WindowsNT3 WindowsNT4 Windows2000 WindowsXP WindowsServer2003 WindowsNTfamily WindowsVista Windows7 Windows8 Windows10
Detection coverage
- 1 YARA rules
Detection rules
- MALPEDIA_Win_Breakthrough_Loader_Auto (yara-rule)
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Win.Breakthrough Loader (report)