SILENTUPLOADER

Malware type
loader, dropper
Profile updated
2026-07-07 13:08:44

Targeted industries: financial-services government-and-public-sector technology-and-telecommunications

Context

According to Mandiant, SILENTUPLOADER is an uploader written in MSIL that is dropped by DOSTEALER and is designed to work specifically in tandem with it. It checks for files in a specified folder every 30 seconds and uploads them to a remote server.

Reports & references

  • socradar.io — Dark Web Profile Apt42 Iranian Cyber Espionage Group (report)
  • Mandiant — 17826 (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Silentuploader (report)

External references