Xiangoop

First seen
2021-04-15 00:00:00
Malware type
trojan, ransomware
Family
Malware family
Profile updated
2026-07-07 14:53:19

Targeted industries: financial-services government-and-public-sector healthcare-and-pharmaceutical

Targeted regions: country_code:us country_code:de

Context

Xiangoop is a sophisticated malware family that primarily targets financial institutions and governmental entities. It is known for deploying trojan and ransomware capabilities, often resulting in significant data breaches and financial loss.

Detection coverage

  • 1 YARA rules

Detection rules

  • MALPEDIA_Win_Xiangoop_Auto (yara-rule)

Reports & references

  • hitcon.org — Pirates Of The Nang Hai Follow The Artifacts Of Tropic Trooper, No One Knows (report)
  • virusbulletin.com — Unveiling Activities Tropic Trooper 2023 Deep Analysis Xiangoop Loader And Entryshell Payload (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Xiangoop (report)

External references