Threat Group Cards: A Threat Actor Encyclopedia Archived: 2026-04-06 00:43:22 UTC Home > List all groups > List all tools > List all groups using tool RemShell Tool: RemShell Names RemShell Category Malware Type Backdoor Description (Positive Technologies) As the main malware used to control infected hosts, RemShell offers attackers several capabilities: 1. Remote control via cmd shell. 2. Downloading of files to remote host. 3. Uploading of files from remote host to C2 server. Information Last change to this tool card: 29 December 2022 Download this tool card in JSON format All groups using tool RemShell Changed Name Country Observed APT groups TaskMasters 2010-May 2021 1 group listed (1 APT, 0 other, 0 unknown) Source: https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=5b99eddb-f4cd-4c47-afee-5b1a78a0a078 https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=5b99eddb-f4cd-4c47-afee-5b1a78a0a078 Page 1 of 1