Netskope Threat Labs

Quasar

ATP Sandbox Adv. HeuristicsAVNetskope IPS

Quasar is an open source remote access trojan written in C sharp that gives operators remote desktop control, file management, credential theft, and reverse proxy capabilities on infected systems. Its free availability made it popular with both administrators and cyberattackers, and its builders and modified editions circulate widely. Intrusion crews frequently deploy it for full remote access after phishing or loader based initial access.

First seen
April 2022
Last seen
October 2026
Alert Name
ByteCode-MSIL.Backdoor.Quasar
ByteCode-MSIL.Spyware.Quasar
ByteCode-MSIL.Trojan.Quasar
Linux.Backdoor.Quasar
Script-BAT.Backdoor.Quasar
Script-JS.Backdoor.Quasar
Trojan.Linux.Quasar.A
Win32.Backdoor.Quasar
Win32.Exploit.Quasar
Win32.Ransomware.Quasar