HLUX

First seen
2011-01-01 00:00:00
Malware type
botnet
Family
Malware family
Profile updated
2026-07-07 15:05:38

Context

HLUX, also known as Kelihos, is a botnet malware known for its peer-to-peer architecture which is used for activities such as spamming, data theft, and financial fraud. It emerged in 2011 and has evolved through several iterations, demonstrating resilience against takedown attempts.

Detection coverage

  • 1 YARA rules

Detection rules

  • MALPEDIA_Win_Hlux_Auto (yara-rule)

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Hlux (report)

External references