Threats Tagged 'autohotkey'
View all threats tagged with 'autohotkey'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'autohotkey'
Click on any threat for detailed analysis and mitigation recommendations
Threat Actors Weaponize AI Hype to Deliver AsyncRAT 0 This threat involves a sophisticated malware campaign that leverages the hype around artificial intelligence to distribute malicious files disguised as AI-related learning materials. The infection chain is multi-stage and complex, starting with compressed archives containing LNK shortcuts and hidden PDFs. It uses obfuscation techniques with PowerShell, batch files, and AutoHotkey loaders to establish persistence and deploy two .NET Remote Access Trojans, including AsyncRAT. The campaign employs advanced techniques such as process hollowing, reflective DLL injection, and scheduled task persistence, while disabling Windows Defender exclusions to evade detection. The malware scripts use Simplified Chinese variable names and cultural references to Chinese mythology, suggesting AI-assisted development and a Chinese threat actor origin. No specific affected software versions or patches are identified. Join the discussion | AlienVault OTX General | 06/11/2026, 16:31:56 UTC Added: 06/15/2026, 19:30:18 UTC |
Showing 1 to 1 of 1 result