Netskope Threat Labs

Bedep

ATP Sandbox Adv. HeuristicsAVNetskope IPS

Bedep is a botnet that generates fraudulent advertising revenue through click fraud and doubles as a downloader for additional malware. It infects Windows systems through exploit kits and spam campaigns, then connects to command and control servers that direct its fraudulent browsing and payload downloads. The family shares infrastructure with other criminal operations, and researchers have observed it installing banking trojans and other payloads on infected systems.

First seen
April 2022
Last seen
October 2026
Alert Name
Binary.Trojan.Bedep
Trojan.Bedep.Gen.1
Trojan.Bedep.Gen.2
Trojan.Bedep.Gen.3
Win32.Trojan.Bedep