DarkMe

First seen
2022-08-15 00:00:00
Malware type
rat, trojan
Family
Malware family
Last IoC activity
2026-06-27 22:25:04
Profile updated
2026-07-07 14:56:39

Targeted industries: government-and-public-sector financial-services technology-and-telecommunications

Targeted regions: country_code:ru country_code:us country_code:ua

Context

DarkMe is a remote access trojan (RAT) known for targeting government and financial institutions in Eastern Europe and Russia. It allows attackers to execute commands remotely on infected systems, facilitating espionage and data exfiltration.

Detection coverage

  • 1 YARA rules

Detection rules

  • MALPEDIA_Win_Darkme_Auto (yara-rule)

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Darkme (report)
  • Trend Micro — Cve202421412 Water Hydra Targets Traders With Windows Defender S (report)
  • blog.nsfocus.net — Darkcasino Apt Evilnum (report)

External references