Last seven days
- First activity
- Aug 26, 2026
- Last activity
- Sep 1, 2026
- Feed role
- C2 / Distribution
- Host form
- 18 IP / 0 hostnames
Adaptix C2 is a relatively new command-and-control/post-exploitation framework referenced as being adopted quickly by malicious actors.
Profile source: Mallory opens in a new tabAdaptix C2
Adaptix C2 is a relatively new command-and-control/post-exploitation framework referenced as being adopted quickly by malicious actors. In the provided reporting, it is described as command-and-control infrastructure used in Operation DUPEHIKE, a malware campaign dated December 5, 2025 that targeted Russian human resources personnel using a bonus-themed lure. That operation reportedly delivered the DUPERUNNER malware and involved process injection alongside use of Adaptix C2. Beyond its role as C2 infrastructure and its association with that campaign, the provided content does not supply further high-confidence technical details on Adaptix C2βs internal capabilities, supported platforms, protocols, or specific indicators of compromise.
C2 tracking
Derp observations, rolling seven-day window
Samples
6372bff9c34f2570cdfab7acc0c9205c48b11b588f0f1136cbeaf163992f75b6 667bed790b30af6168432dc4dbd25a38d5e584a0171100c66c046730c0daae88 98d957316a3d556bfe145d8a032999e5ad913c3d51d57cdf1333cf3d68182b81 1bd88557eddc193899dd98bb0d1ee69d86654ee613072ccf0fb7c6ca9984dc9b 6a3b5834c0073f53a0b330341f2ef10cbf5b88836e933a5362d968908e9c497e 7e95ca75dd6cb9b6bf34ce448f42127611b21af65c0da4141ce07109dd0832cd 94d6821670b35e64ae9491d09491b6d2dc7046e85ad0477085a799aeab6deb41 MITRE ATT&CK
Derp wouldn't exist without the work these projects do for the security community. We rely on their data sources to improve the quality and depth of what we publish. Thank you, we're genuinely grateful.