NightshadeC2 (Python)

Malware type
rat, keylogger, screen-capture, credential-stealer, spyware
Family
Malware family
Profile updated
2026-07-07 14:40:28

Targeted industries: financial-services government-and-public-sector healthcare-and-pharmaceutical technology-and-telecommunications

Context

According to eSentire, NightshadeC2 demonstrates an extensive capability set, including: Reverse shell via Command Prompt/PowerShell; Download and execute DLL or EXE; Self-deletion; Remote control; Screen capture; Hidden web browsers; Keylogging; clipboard content capturing. Certain variants have been found with stealing capabilities that enable the extraction of browser passwords and cookies from victim systems for both Gecko and Chromium based browsers.

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Py.Nightshade C2 (report)
  • esentire.com — New Botnet Emerges From The Shadows Nightshadec2 (report)

External references