APT / THREAT GROUP
Unidentified PS 003 (RAT)
2
aliases
Last seen:Mar 17, 2026
Intelligence Profile
This malware is a RAT written in PowerShell. It has the following capabilities: Downloading and Uploading files, loading and execution of a PowerShell script, execution of a specific command. It was observed by Malwarebytes LABS Threat Intelligence Team in a newly discovered campaign: this campaigns tries to lure Germans with a promise of updates on the current threat situation in Ukraine according to Malwarebyte LABS.
Threat Analysis
Unidentified PS 003 (RAT) is a known-sophistication threat actor of undetermined national origin, engaged in cyber operations with a primary motivation of unknown activity patterns.
External References
Quick Facts
TypeAPT / Threat Group
Aliases2
Also Known As
Unidentified PS 003 (RAT)ps1.unidentified_003
External Intelligence
Malpedia: ps1.unidentified_003Research Links
Data sourced from Malpedia, Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Actor attribution is based on available intelligence and may be incomplete.