SILENTUPLOADER
- Malware type
- loader, dropper
- Profile updated
- 2026-07-07 13:08:44
Targeted industries: financial-services government-and-public-sector technology-and-telecommunications
Context
According to Mandiant, SILENTUPLOADER is an uploader written in MSIL that is dropped by DOSTEALER and is designed to work specifically in tandem with it. It checks for files in a specified folder every 30 seconds and uploads them to a remote server.
Reports & references
- socradar.io — Dark Web Profile Apt42 Iranian Cyber Espionage Group (report)
- Mandiant — 17826 (report)
- malpedia.caad.fkie.fraunhofer.de — Win.Silentuploader (report)