Skip to content

Observed infrastructure

Last seven days

First activity
Jul 19, 2026
Last activity
Jul 20, 2026
Feed role
Distribution
Host form
0 IP / 5 hostnames

Leading locations

  • DE2
  • NL1
  • RU1
  • US1

Leading providers

  • OVH SAS2
  • Cloudflare, Inc.1
  • GTHost1
  • VDSka hosting1

Infrastructure traits

  • Hosting 5
  • Anycast 1

Samples

Recent associated samples

Reported operators

Threat actors

1 named in public reporting
Y2K Operators

Millenium RAT v4 is a C++-based Remote Access Trojan (RAT) offered as a Malware-as-a-Service (MaaS) by the developer ShinyEnigma and actively deployed by the Y2K Operators threat cluster.

MITRE ATT&CK

Millenium RAT in ATT&CK

21 distinct techniques

We appreciate you

Derp wouldn't exist without the work these projects do for the security community. We rely on their data sources to improve the quality and depth of what we publish. Thank you, we're genuinely grateful.