JSSLoader is a Remote Access Trojan (RAT) is spreading through Microsoft Excel's XLL add-in file. An XLL file is a type of dynamic link library (DLL) file that can only be opened by Excel.
MysterySnail RAT exploits use-after-free vulnerability (CVE-2021-40449) in Win32 NtGdiResetDC function. This effect almost all Windows version after XP, including Windows Server.
Klingon RAT is a sophisticated Go based Remote Access Trojans (RATs). It is used by threat actors to extract financial information from its victims.
ToxicEye is remote access trojan written in C# and is controlled via Telegram. Its main know form of proliferation is via phishing email. If victim is successfully tricked into executing its executable it will install itself silently and install other malware.
SystemBC is a malware sold that is on sale in underground marketplaces. SystemBC has evolved into a Tor proxy and remote control tool favored by actors behind the latest high-profile ransomware campaigns.