Threat Group Cards: A Threat Actor Encyclopedia Archived: 2026-04-05 21:33:17 UTC Home > List all groups > List all tools > List all groups using tool Roland Tool: Roland Names Roland Roland RAT Category Malware Type Reconnaissance, Backdoor, Info stealer, Exfiltration Description (Cylance) Roland arrives as an un-obfuscated Win32 PE DLL. This particular version has been packaged to resemble a legitimate DLL, and contains a custom C2 protocol supporting a range of file, registry, process and memory operations, as well as a reverse shell, FTP file uploads, and retrieving system/user information. Information Last change to this tool card: 20 April 2020 Download this tool card in JSON format All groups using tool Roland Changed Name Country Observed APT groups   APT 32, OceanLotus, SeaLotus 2013-Aug 2024 1 group listed (1 APT, 0 other, 0 unknown) Source: https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=8ae6858b-a935-4e49-8cf0-8be23f0ec106 https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=8ae6858b-a935-4e49-8cf0-8be23f0ec106 Page 1 of 1