Unidentified PS 003 (RAT)

Malware type
rat
Profile updated
2026-07-07 14:39:33

Targeted industries: government-and-public-sector

Targeted regions: country_code:de

Context

This malware is a RAT written in PowerShell. It has the following capabilities: Downloading and Uploading files, loading and execution of a PowerShell script, execution of a specific command. It was observed by Malwarebytes LABS Threat Intelligence Team in a newly discovered campaign: this campaigns tries to lure Germans with a promise of updates on the current threat situation in Ukraine according to Malwarebyte LABS.

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Ps1.Unidentified 003 (report)
  • blog.malwarebytes.com — Custom Powershell Rat Targets Germans Seeking Information About The Ukraine Crisis (report)

External references