Common Information
Type Value
Value
AHK Bot
Category Tool
Type Tool
Misp Type Cluster
Description According to Proofpoint, the A(uto)H(ot)K(key) Bot is a collection of separate AutoHotKey scripts. The bot's main component is an infinite loop that polls and downloads additional AHK scripts. The bot can load a stealer like Rhadamanthys and can check if the machine is part of an Active Directory domain.
Details Published Attributes CTI Title
Details Website 2024-10-23 0 New Malware WarmCookie Targets Users with Malicious Links
Details Website 2024-10-23 8 Threat Spotlight: WarmCookie/BadSpace
Details Website 2024-10-23 44 Highlighting TA866/Asylum Ambuscade Activity Since 2021
Details Website 2023-09-14 41 Tatar-Language Users in the Crosshairs of Python Screenshotter
Details Website 2023-06-09 2 Asylum Ambuscade: A Cybercrime Group with Espionage Ambitions
Details Website 2023-02-13 1 Are you cyberattack worthy? Phishing attack attempts to find out
Details Website 2023-02-13 0 Hackers Targeting U.S. and German Firms Monitor Victims' Desktops with Screenshotter
Details Website 2023-02-09 0 Hacker develops new 'Screenshotter' malware to find high-value targets
Details Website 2023-02-08 58 Screentime: Sometimes It Feels Like Somebody's Watching Me | Proofpoint US
Details Website 2023-01-05 4 Ruleset Update Summary - 2023/01/05 - v10212