Uptime Hamster: 10d 20h 49mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza MALLARD SPIDER

MALLARD SPIDER

0 incidentes 0 paises 0 sectores apt RU Ultimo: -
Aliases: QBot, Gold Lagoon, Quakbot, TA570, QakBot, GOLD LAGOON, DEV-0450, Mallard Spider, PinkSlip
Ver en IntelTracker → APTTrail →
MALLARD SPIDER is CrowdStrike's designation for the financially motivated cybercriminal operators behind the QakBot (also known as Qbot or Pinkslipbot) malware, which first emerged in late 2007. Originally developed as a banking trojan, the group has continuously evolved its operations and the QakBot malware into a versatile, modular botnet and malware loader. Their primary motivation is financial gain, achieved through stealing sensitive financial data, facilitating fraudulent activities, and acting as an initial access broker for various ransomware groups. MALLARD SPIDER is assessed with high confidence to be of Russian origin and is notably resilient, demonstrating prolonged activity over 15 years despite significant law enforcement disruptions. This group is distinguished by its constant adaptation and its 'Swiss Army knife' approach to cybercrime, offering a broad range of malicious capabilities and serving as a critical component in the cybercrime ecosystem.

Aliases del actor

QBotGold LagoonQuakbotTA570QakBotGOLD LAGOONDEV-0450Mallard SpiderPinkSlip

Actores similares

Scattered Spideractor · 2Indrik Spideractor · 1doppel-spideractor · 1salty-spideractor · 1brain-spideractor · 1skeleton-spideractor · 1bamboo-spideractor · 1andromeda-spideractor · 1cobalt-spideractor · 1boson-spideractor · 1
Motivacion