EvilExtractor
- First seen
- 2023-04-01 00:00:00
- Malware type
- keylogger, ransomware, spyware
- Family
- Malware family
- Last IoC activity
- 2026-06-19 02:21:07
- Profile updated
- 2026-07-07 13:15:35
Targeted industries: education-and-nonprofits technology-and-telecommunications
Context
EvilExtractor is a piece of malware known for its versatility, combining aspects of both ransomware and spyware. It is primarily designed to exfiltrate sensitive information and encrypt files, targeting educational and technological sectors.
Reports & references
- Trend Micro — Updated Shadowpad Malware Leads To Ransomware Deployment (report)
- malpedia.caad.fkie.fraunhofer.de — Win.Evilextractor (report)
- Trend Micro — Updated Shadowpad Malware Leads To Ransomware Deployment (report)
- fortinet.com — Evil Extractor All In One Stealer (report)
- netresec.com (report)