← Back to Pulse Feed
PULSE DETAIL
PULSE NAME
TAXISPY RAT : Analysis of TaxiSpy RAT Russian Banking Focused Android Malware with Full Remote Control
TaxiSpy RAT is an advanced Android banking Trojan integrated with Remote Access Trojan (RAT) functionality, primarily aimed at Russian financial institutions. This malware employs sophisticated evasion techniques, including native library encryption and rolling XOR string obfuscation, enabling it to operate stealthily. Its architecture facilitates comprehensive device surveillance, targeting SMS, call logs, contacts, and notifications, indicative of its financially motivated intent to steal sensitive information and remotely control devices.
MITRE ATT&CK & Malware Families
Indicators of Compromise (2 / 8 total)
| TYPE | INDICATOR | DESCRIPTION | CREATED | |
|---|---|---|---|---|
| FileHash-MD5 | 7d739136f2a76009b265d24b1e9f59a5 | MD5 of 67d5d8283346f850eb560f10424ea5a9ccdca5e6769fbbbf659a3e308987cafd | 2026-03-08 | |
| FileHash-MD5 | 9bc096a5f4ec7ba133d743cbaf4b8a2e | — | 2026-03-08 |