Rakhni
- First seen
- 2013-07-01 00:00:00
- Malware type
- ransomware, trojan, dropper
- Family
- Malware family
- Profile updated
- 2026-07-07 15:17:14
Targeted industries: financial-services government-and-public-sector healthcare-and-pharmaceutical retail-and-hospitality
Targeted regions: country_code:ru country_code:by country_code:ua
Context
Rakhni is a multi-functional malware primarily known for its ransomware capabilities. It can act as a ransomware, encrypting victims' files unless a ransom is paid, or alternatively, deploy a cryptomining module. The malware has been observed targeting several sectors, with a particular focus on Russia and neighboring countries.
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Win.Rakhni (report)
- Kaspersky — 86307 (report)