logo

Argamal: Malware hidden in hentai games

ID: 78d29320-8bf1-54e8-9be6-1d5c699c7e6f

STIX ID: report--78d29320-8bf1-54e8-9be6-1d5c699c7e6f

Feed Name: Securelist by Kaspersky

Threat Score
75/100

Date Published: 2026-06-03

Date Updated: 2026-06-03

Author: Mikhail Reznichenko

...
...

Argamal is a newly identified RAT campaign (April 2026) that trojanizes adult games to drop a downloader which establishes persistence via COM hijacking and later fetches an encrypted payload from GitHub, resulting in full remote control of infected machines; the report provides detailed technical analysis, C2 and command functionality, multiple delivery variants, IoCs (file hashes, domains, IPs, GitHub repos), victim distribution across countries, and limited attribution to a Spanish-speaking developer.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.