Threat Group Cards: A Threat Actor Encyclopedia Archived: 2026-04-05 23:43:35 UTC Home > List all groups > List all tools > List all groups using tool Spindest Tool: Spindest Names Spindest Backdoor.Apocalipto Category Malware Type Backdoor Description (ThreatConnect) This threat has been identified using a malware implant specifically known as “Spindest” or “Backdoor.Apocalipto”. This threat appears to have been in use for some time, and has been primarily observed being delivered from URLs on compromised intermediary websites along with other possibly initial infection vectors such as spearphishing operations. The implant generally uses dynamic command and control (C2) infrastructure. Information Last change to this tool card: 20 April 2020 Download this tool card in JSON format All groups using tool Spindest Changed Name Country Observed APT groups Nitro, Covert Grove 2011-Jul 2014 1 group listed (1 APT, 0 other, 0 unknown) Source: https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=5b61ad4c-e5aa-42ea-98ad-29503fcce266 https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=5b61ad4c-e5aa-42ea-98ad-29503fcce266 Page 1 of 1