EHDevel
- First seen
- 2014-06-01 00:00:00
- Malware type
- rat
- Family
- Malware family
- Profile updated
- 2026-07-07 14:59:37
Targeted industries: government-and-public-sector technology-and-telecommunications
Targeted regions: country_code:vn
Context
EHDevel is a remote access trojan (RAT) utilized by threat actors, primarily targeting government and telecommunications sectors. It is associated with cyber-espionage activities and has been observed in use against entities in Vietnam.
Detection coverage
- 1 YARA rules
Detection rules
- MALPEDIA_Win_Ehdevel_Auto (yara-rule)
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Win.Ehdevel (report)
- bitdefender.com — Ehdevel The Story Of A Continuously Improving Advanced Threat Creation Toolkit (report)
- labs.bitdefender.com — Ehdevel The Story Of A Continuously Improving Advanced Threat Creation Toolkit (report)