Mole
- First seen
- 2014-05-01 00:00:00
- Malware type
- rat
- Family
- Malware family
- Last IoC activity
- 2026-04-29 01:45:06
- Profile updated
- 2026-07-07 15:12:22
Targeted industries: financial-services government-and-public-sector
Targeted regions: country_code:us country_code:fr country_code:gb
Context
Mole is a remote access trojan (RAT) used primarily for espionage purposes. It is known for targeting financial and government sectors, enabling attackers to remotely access compromised systems.
Detection coverage
- 2 YARA rules
Detection rules
- MALPEDIA_Win_Mole_Auto (yara-rule)
- CAPE_Mole (yara-rule)
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Win.Mole (report)
- cert.pl — Mole Ransomware Analysis And Decryptor (report)
- proofpoint.com — Adgholas Malvertising Campaign Using Astrum Ek Deliver Mole Ransomware (report)