Last seven days
- First activity
- Jul 15, 2026
- Last activity
- Jul 22, 2026
- Feed role
- C2
- Host form
- 64 IP / 1 hostnames
Adaptix C2 is a relatively new command-and-control/post-exploitation framework referenced as being adopted quickly by malicious actors.
Profile source: Mallory opens in a new tabAdaptix C2
Adaptix C2 is a relatively new command-and-control/post-exploitation framework referenced as being adopted quickly by malicious actors. In the provided reporting, it is described as command-and-control infrastructure used in Operation DUPEHIKE, a malware campaign dated December 5, 2025 that targeted Russian human resources personnel using a bonus-themed lure. That operation reportedly delivered the DUPERUNNER malware and involved process injection alongside use of Adaptix C2. Beyond its role as C2 infrastructure and its association with that campaign, the provided content does not supply further high-confidence technical details on Adaptix C2βs internal capabilities, supported platforms, protocols, or specific indicators of compromise.
C2 tracking
Derp observations, rolling seven-day window
Samples
8116c27fdd5f683b1e484305476fc592ec3c85b08287b129a55c71453af20b38 26919b2e1fbbfb85f6a0d7eac48780172439ac7e31380ca320deaeaf92330417 10b11294ae9af97925cc805441884c361ae1a48f09510a5b3aa1f406c546409f 935603332954acd156b166f9bd8dc39d846acc562ca41153ace245e0a503914d 5561b6fc21a87b9fe542b2677b5c9d7a854f2d7d3b5f08a26735cc460fcb8d99 MITRE ATT&CK
Derp wouldn't exist without the work these projects do for the security community. We rely on their data sources to improve the quality and depth of what we publish. Thank you, we're genuinely grateful.