Threat Group Cards: A Threat Actor Encyclopedia Archived: 2026-04-05 16:49:55 UTC Home > List all groups > List all tools > List all groups using tool ValeforBeta Tool: ValeforBeta Names ValeforBeta Category Malware Type Backdoor, Loader, Downloader, Exfiltration Description (JPCERT/CC) ValeforBeta is a HTTP bot developed in Delphi, and its functions are even simpler than those of VSingle. Besides arbitrary code execution from remote network, it just uploads and downloads files. Information Last change to this tool card: 20 April 2021 Download this tool card in JSON format All groups using tool ValeforBeta Changed Name Country Observed APT groups   Lazarus Group, Hidden Cobra, Labyrinth Chollima 2007-May 2025 1 group listed (1 APT, 0 other, 0 unknown) Source: https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=7f3eebbe-2f99-4045-87b6-920657ba5552 https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=7f3eebbe-2f99-4045-87b6-920657ba5552 Page 1 of 1