Matryosh

First seen
2017-04-01 00:00:00
Malware type
trojan
Family
Malware family
Profile updated
2026-07-07 14:27:19

Targeted industries: government-and-public-sector financial-services

Targeted regions: country_code:ru country_code:ua

Context

Matryosh is a sophisticated malware family used primarily for cyber-espionage. It targets government and financial sectors in Russia and Ukraine through stealthy operations, often remaining undetected for extended periods.

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Elf.Matryosh (report)
  • blog.netlab.360.com — Matryosh Botnet Is Spreading En (report)

External references