ZUpdater
Aliases: Zpevdo
- First seen
- 2020-07-15 00:00:00
- Malware type
- downloader, trojan
- Family
- Malware family
- Profile updated
- 2026-07-07 15:27:51
Targeted industries: government-and-public-sector financial-services energy-and-utilities
Targeted regions: country_code:us country_code:ru country_code:cn
Context
ZUpdater, also known as Zpevdo, is a downloader trojan used to deploy additional payloads onto infected systems. It is known to target government, financial services, and energy sectors in several countries. The malware actively communicates with command and control servers to receive instructions and updates.
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Win.Zupdater (report)
- app.any.run — Ea024149 8E83 41C0 B0Ed 32Ec38Dea4A6 (report)