DarkMe
- First seen
- 2022-08-15 00:00:00
- Malware type
- rat, trojan
- Family
- Malware family
- Last IoC activity
- 2026-06-27 22:25:04
- Profile updated
- 2026-07-07 14:56:39
Targeted industries: government-and-public-sector financial-services technology-and-telecommunications
Targeted regions: country_code:ru country_code:us country_code:ua
Context
DarkMe is a remote access trojan (RAT) known for targeting government and financial institutions in Eastern Europe and Russia. It allows attackers to execute commands remotely on infected systems, facilitating espionage and data exfiltration.
Detection coverage
- 1 YARA rules
Detection rules
- MALPEDIA_Win_Darkme_Auto (yara-rule)
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Win.Darkme (report)
- Trend Micro — Cve202421412 Water Hydra Targets Traders With Windows Defender S (report)
- blog.nsfocus.net — Darkcasino Apt Evilnum (report)