KTLVdoor (Windows)

First seen
2021-03-15 00:00:00
Malware type
backdoor, trojan
Profile updated
2026-07-07 14:26:45

Targeted industries: government-and-public-sector financial-services energy-and-utilities

Targeted regions: country_code:us country_code:ru

Context

According to Trend Micro, KTLVdoor is a highly obfuscated malware that masquerades as different system utilities, allowing attackers to carry out a variety of tasks including file manipulation, command execution, and remote port scanning.

Reports & references

  • Trend Micro — Earth Lusca Ktlvdoor (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Ktlv Door (report)

External references