This release consists of the following:
- StarCat ransomware
- PumaKit malware (dropper, loader, and rootkit)
- HeartCrypt loader, including updated variant
- Original: 041d4574eda3c49463bd166b2615a0fd
- Updated: 2fef7755d593c6853231b57d365a536b
- Anarchy Panel HVNC malware
- Viper framework Block Reverse TCP
- Rhadamanthys .NET loader
- VIP keylogger
- Nova keylogger
- TA397 malware WmRAT and MiyaRAT
- Updated PeakLight components using substring and substitution encoding algorithm
- CStealer derivative malware:
- Vilsa Stealer: 04ea38d79ca7e2c738922024a026d3ef
- NiceRAT: 8f3dbf6c9c564b2227adf3f9137f16bf
- Carrot Stealer: 170d7c79487100cc30d33ec2c3419156
- Paladium Stealer: c13a2316afaa21b58f35f8885f3afbaf
- mixium Stealer: 8c2a9743d0c4169de905d00cc2d4102e
- X-VDP-X Stealer: f6bdeb973e60de2b5f7c87c87d9c0b94
- XX Stealer: 3638819bda6ecdaaabc8f4f67df60cbb
- uf Stealer: 7247b7b95715cf3298d943d0a69f92ea