DustySky

MITRE
Malware Type:
Other
First seen:
Unknown
Last seen:
Unknown
Details:

[DustySky](https://attack.mitre.org/software/S0062) is multi-stage malware written in .NET that has been used by [Molerats](https://attack.mitre.org/groups/G0021) since May 2015. (Citation: DustySky) (Citation: DustySky2)(Citation: Kaspersky MoleRATs April 2019)

Associated Techniques (19)
ID ATT&CK Tactics
T1008 Fallback Channels -
T1027 Obfuscated Files or Information -
T1041 Exfiltration Over C2 Channel -
T1047 Windows Management Instrumentation -
T1056.001 Keylogging -
T1057 Process Discovery -
T1070.004 File Deletion -
T1071.001 Web Protocols -
T1074.001 Local Data Staging -
T1082 System Information Discovery -
T1083 File and Directory Discovery -
T1091 Replication Through Removable Media -
T1113 Screen Capture -
T1120 Peripheral Device Discovery -
T1518 Software Discovery -
Aliases (105)
NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm NeD Worm
Used by Actors (1)
Metadata
ID: 305
Created: 13/01/2026 17:48
Updated: 06/03/2026 16:00