Unidentified 066

Malware type
rat, downloader, dropper
Profile updated
2026-07-07 12:47:42

Context

This .net executable can receive commands from c2 sever, upload and download files according to the returned content, perform an uninstall, or modify the registry to achieve persistence across reboots. At the end, it downloads a Python-based RAT, called PeppyRAT.

Reports & references

  • s.tencent.com — 669 (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Unidentified 066 (report)

External references