Netskope Threat Labs

Lilith

ATP Sandbox Adv. HeuristicsAV

Lilith is a console based, ultra lightweight remote access trojan written in C++ whose straightforward command set gives operators near complete control of a machine.

First seen
August 2022
Last seen
October 2026
Alert Name
Generic.Ransom.Lilith.A.16997296
Generic.Ransom.Lilith.A.3075FF61
Generic.Ransom.Lilith.A.4438325D
Trojan.Ransom.Lilith.A
Trojan.Ransom.Lilith.B
Win64.Ransomware.Lilith