Gacrux

First seen
2022-08-15 00:00:00
Malware type
trojan, backdoor
Family
Malware family
Profile updated
2026-07-07 15:02:28

Targeted industries: government-and-public-sector financial-services

Targeted regions: country_code:us country_code:ru

Context

Gacrux is a trojan malware family known for its backdoor capabilities, often used in cyberespionage campaigns targeting government and financial sectors. It has been observed in various attacks primarily in the United States and Russia.

Detection coverage

  • 1 YARA rules

Detection rules

  • MALPEDIA_Win_Gacrux_Auto (yara-rule)

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Gacrux (report)
  • krabsonsecurity.com — Gacrux A Basic C Malware With A Custom Pe Loader (report)

External references