Mole

First seen
2014-05-01 00:00:00
Malware type
rat
Family
Malware family
Last IoC activity
2026-04-29 01:45:06
Profile updated
2026-07-07 15:12:22

Targeted industries: financial-services government-and-public-sector

Targeted regions: country_code:us country_code:fr country_code:gb

Context

Mole is a remote access trojan (RAT) used primarily for espionage purposes. It is known for targeting financial and government sectors, enabling attackers to remotely access compromised systems.

Detection coverage

  • 2 YARA rules

Detection rules

  • MALPEDIA_Win_Mole_Auto (yara-rule)
  • CAPE_Mole (yara-rule)

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Mole (report)
  • cert.pl — Mole Ransomware Analysis And Decryptor (report)
  • proofpoint.com — Adgholas Malvertising Campaign Using Astrum Ek Deliver Mole Ransomware (report)

External references