Description

The Process Enumeration feature in malware provides attackers with a detailed inventory of all running processes on a compromised system. This is the digital equivalent of a burglar quietly taking stock of valuables in a home. By cataloging active processes, the malware gains insights into the software environment, including potential vulnerabilities and operational characteristics of the target system. This information can be invaluable for escalating privileges, inserting additional payloads, or avoiding detection by identifying security software that may be running. Process Enumeration thereby serves as a crucial intelligence-gathering step, arming attackers with the necessary data to tailor their subsequent actions for maximum impact and minimum detection.


Categories Disruption, System Management
Dangerousness Medium

Existing Techniques

Associated with Releases

Version Origins Authors Languages Release Date
Sinique 1.0 logoSinique 1.0 Unknown ๐Ÿดโ€โ˜ ๏ธ xtremeNTL Delphi Oct, 2003
Fearless Lite 1.01 logoFearless Lite 1.01 Australia ๐Ÿ‡ฆ๐Ÿ‡บ, France ๐Ÿ‡ซ๐Ÿ‡ท Read101 , Triforce Delphi Nov, 2003
ProRat 1.1 logoProRat 1.1 Turkey ๐Ÿ‡น๐Ÿ‡ท HighLander , ATmaCA Borland C++ Jan, 2004
Hue 1.0 logoHue 1.0 Unknown ๐Ÿดโ€โ˜ ๏ธ B33T Visual Basic 6 (VB6) Jan, 2004
ProRat 1.2 logoProRat 1.2 Turkey ๐Ÿ‡น๐Ÿ‡ท HighLander , ATmaCA Borland C++ Jan, 2004
ProRat 1.3 logoProRat 1.3 Turkey ๐Ÿ‡น๐Ÿ‡ท HighLander , ATmaCA Borland C++ Feb, 2004
Nuclear RAT 1.0 Beta 5 logoNuclear RAT 1.0 Beta 5 Brazil ๐Ÿ‡ง๐Ÿ‡ท caesar2k Delphi Feb, 2004
Beast 2.06 logoBeast 2.06 Romania ๐Ÿ‡ท๐Ÿ‡ด Tataye Delphi Feb, 2004
ProRat 1.4 logoProRat 1.4 Turkey ๐Ÿ‡น๐Ÿ‡ท HighLander , ATmaCA Borland C++ Feb, 2004
LanFiltrator 1.5 Beta III logoLanFiltrator 1.5 Beta III Australia ๐Ÿ‡ฆ๐Ÿ‡บ Read101 Delphi Feb, 2004
ProRat 1.6 logoProRat 1.6 Turkey ๐Ÿ‡น๐Ÿ‡ท HighLander , ATmaCA Borland C++ Mar, 2004
ProRat 1.8 logoProRat 1.8 Turkey ๐Ÿ‡น๐Ÿ‡ท HighLander , ATmaCA Borland C++ Mar, 2004
Infector NG 2004 2.1.0 logoInfector NG 2004 2.1.0 Belgium ๐Ÿ‡ง๐Ÿ‡ช, United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง fc , Infiltration Delphi May, 2004
Optix Pro 1.33 logoOptix Pro 1.33 Unknown ๐Ÿดโ€โ˜ ๏ธ s13az3 Delphi Aug, 2004
Beast 2.07 logoBeast 2.07 Romania ๐Ÿ‡ท๐Ÿ‡ด Tataye Delphi Aug, 2004
Flux 1.0 logoFlux 1.0 Unknown ๐Ÿดโ€โ˜ ๏ธ Gargamel C++ Aug, 2004
Institution 2004 0.4.0 logoInstitution 2004 0.4.0 United States ๐Ÿ‡บ๐Ÿ‡ธ Aphex Delphi Oct, 2004
CIA 1.3 logoCIA 1.3 England ๐Ÿด๓ ง๓ ข๓ ฅ๓ ฎ๓ ง๓ ฟ Alchemist Visual Basic 6 (VB6) Dec, 2004
Seed 1.1 logoSeed 1.1 Brazil ๐Ÿ‡ง๐Ÿ‡ท caesar2k Delphi, C++ Feb, 2005
ProRat 1.9 logoProRat 1.9 Turkey ๐Ÿ‡น๐Ÿ‡ท HighLander , ATmaCA Borland C++ Mar, 2005
Y3K rat 2k5 RC 1.0 logoY3K rat 2k5 RC 1.0 Austria ๐Ÿ‡ฆ๐Ÿ‡น SHA Delphi Jun, 2005
Y3K rat 2k5 RC 1.1 logoY3K rat 2k5 RC 1.1 Austria ๐Ÿ‡ฆ๐Ÿ‡น SHA Delphi Nov, 2005
TrojNa$ 1.0 logoTrojNa$ 1.0 Unknown ๐Ÿดโ€โ˜ ๏ธ, Australia ๐Ÿ‡ฆ๐Ÿ‡บ flippmode , Satan_Addict , Read101 Delphi Jan, 2006
Bersek 1.1 logoBersek 1.1 Brazil ๐Ÿ‡ง๐Ÿ‡ท XpyXt Visual Basic 6 (VB6) Jun, 2006
Turkojan 3.0 logoTurkojan 3.0 Turkey ๐Ÿ‡น๐Ÿ‡ท Fungus Delphi Sep, 2006
Bifrost 1.2.1 logoBifrost 1.2.1 Sweden ๐Ÿ‡ธ๐Ÿ‡ช ksv C++ Jan, 2007
Hav-Rat 1.2 logoHav-Rat 1.2 Sweden ๐Ÿ‡ธ๐Ÿ‡ช Havalito Delphi Feb, 2007
Bandook 1.35 logoBandook 1.35 Lebanon ๐Ÿ‡ฑ๐Ÿ‡ง PrinceAli Delphi, C++ Apr, 2007
Poison Ivy 2.3.0 logoPoison Ivy 2.3.0 Sweden ๐Ÿ‡ธ๐Ÿ‡ช Shapeless Delphi, MASM Jun, 2007
Hav-Rat 1.3.2 logoHav-Rat 1.3.2 Sweden ๐Ÿ‡ธ๐Ÿ‡ช Havalito Delphi Jul, 2007
sharK 2.4.0 Fwb+ logosharK 2.4.0 Fwb+ Germany ๐Ÿ‡ฉ๐Ÿ‡ช sNiper109 , rockZ Visual Basic 6 (VB6) Aug, 2007
DARKMOON 4.11 Private Edition logoDARKMOON 4.11 Private Edition Spain ๐Ÿ‡ช๐Ÿ‡ธ shukisnike Delphi Aug, 2007
Nuclear RAT 2.1.0 logoNuclear RAT 2.1.0 Brazil ๐Ÿ‡ง๐Ÿ‡ท caesar2k Delphi Sep, 2007
Bump-Rat 1.2 Beta logoBump-Rat 1.2 Beta France ๐Ÿ‡ซ๐Ÿ‡ท Scraniak Visual Basic 6 (VB6) Sep, 2007
Poison Ivy 2.3.2 logoPoison Ivy 2.3.2 Sweden ๐Ÿ‡ธ๐Ÿ‡ช Shapeless Delphi, MASM Jan, 2008
Lost Door 1.0 logoLost Door 1.0 Tunisia ๐Ÿ‡น๐Ÿ‡ณ OussamiO Visual Basic 6 (VB6) Jan, 2008
ZombieRat 1.2 logoZombieRat 1.2 Romania ๐Ÿ‡ท๐Ÿ‡ด The Bo$$ Assembly, Delphi Jan, 2008
Lost Door 2.0 logoLost Door 2.0 Tunisia ๐Ÿ‡น๐Ÿ‡ณ OussamiO Visual Basic 6 (VB6) Feb, 2008
Turkojan 4 logoTurkojan 4 Turkey ๐Ÿ‡น๐Ÿ‡ท FยตNGยตยง Delphi Feb, 2008
Turkojan 4.0 logoTurkojan 4.0 Turkey ๐Ÿ‡น๐Ÿ‡ท Fungus Delphi Mar, 2008
sharK 3.1 fwb++ logosharK 3.1 fwb++ Germany ๐Ÿ‡ฉ๐Ÿ‡ช sNiper109 , rockZ Visual Basic 6 (VB6) Mar, 2008
Lost Door 2.2 logoLost Door 2.2 Tunisia ๐Ÿ‡น๐Ÿ‡ณ OussamiO Visual Basic 6 (VB6) May, 2008
Aero 2 logoAero 2 Unknown ๐Ÿดโ€โ˜ ๏ธ Gareth Delphi Oct, 2008
SynRAT 2.1 logoSynRAT 2.1 France ๐Ÿ‡ซ๐Ÿ‡ท DarkCoderSc Delphi Oct, 2008
Lost Door 3.0 Stable logoLost Door 3.0 Stable Tunisia ๐Ÿ‡น๐Ÿ‡ณ OussamiO Visual Basic 6 (VB6) Mar, 2009
SynRAT 4.0.1 logoSynRAT 4.0.1 France ๐Ÿ‡ซ๐Ÿ‡ท DarkCoderSc Delphi May, 2009
PrjRAPTOR 1.8 logoPrjRAPTOR 1.8 United States ๐Ÿ‡บ๐Ÿ‡ธ Ryan.M Visual Basic 6 (VB6) Jul, 2009
Cerberus 1.0 Beta logoCerberus 1.0 Beta United States ๐Ÿ‡บ๐Ÿ‡ธ, United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง Protocol , Steve10120 , 2sly , Sam Delphi Aug, 2009
Cerberus 1.01 Beta logoCerberus 1.01 Beta United States ๐Ÿ‡บ๐Ÿ‡ธ, United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง Protocol , Steve10120 , 2sly , Sam Delphi Aug, 2009
Cerberus 1.02 Beta logoCerberus 1.02 Beta United States ๐Ÿ‡บ๐Ÿ‡ธ, United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง Protocol , Steve10120 , 2sly , Sam Delphi Aug, 2009