Breakthrough

Malware type
loader
Family
Malware family
Last IoC activity
2026-06-09 20:40:16
Profile updated
2026-07-07 14:50:30

Context

There is no reference available for this family and all known samples have version 1.0.0. Pdb-strings in the samples suggest that this is an "exclusive" loader, known as "breakthrough" (maybe), e.g. C:\Users\Exclusiv\Desktop\хп-пробив\Release\build.pdb The communication url parameters are pretty unique in this combination: gate.php?hwid=&os=&build=1.0.0&cpu=8 is one of: Windows95 Windows98 WindowsMe Windows95family WindowsNT3 WindowsNT4 Windows2000 WindowsXP WindowsServer2003 WindowsNTfamily WindowsVista Windows7 Windows8 Windows10

Detection coverage

  • 1 YARA rules

Detection rules

  • MALPEDIA_Win_Breakthrough_Loader_Auto (yara-rule)

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Breakthrough Loader (report)

External references