EvilExtractor

First seen
2023-04-01 00:00:00
Malware type
keylogger, ransomware, spyware
Family
Malware family
Last IoC activity
2026-06-19 02:21:07
Profile updated
2026-07-07 13:15:35

Targeted industries: education-and-nonprofits technology-and-telecommunications

Context

EvilExtractor is a piece of malware known for its versatility, combining aspects of both ransomware and spyware. It is primarily designed to exfiltrate sensitive information and encrypt files, targeting educational and technological sectors.

Reports & references

  • Trend Micro — Updated Shadowpad Malware Leads To Ransomware Deployment (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Evilextractor (report)
  • Trend Micro — Updated Shadowpad Malware Leads To Ransomware Deployment (report)
  • fortinet.com — Evil Extractor All In One Stealer (report)
  • netresec.com (report)

External references