Threat Group Cards: A Threat Actor Encyclopedia Archived: 2026-04-05 21:21:34 UTC Home > List all groups > List all tools > List all groups using tool Helminth Tool: Helminth Names Helminth Category Malware Type Backdoor Description Helminth is a backdoor that has at least two variants - one written in VBScript and PowerShell that is delivered via a macros in Excel spreadsheets, and one that is a standalone Windows executable. Information MITRE ATT&CK Malpedia AlienVault OTX Last change to this tool card: 13 May 2020 Download this tool card in JSON format All groups using tool Helminth Changed Name Country Observed APT groups OilRig, APT 34, Helix Kitten, Chrysene 2014-Sep 2024 https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=36781ff8-6907-4f06-9ce6-d1f4575b3f71 Page 1 of 2 1 group listed (1 APT, 0 other, 0 unknown) Source: https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=36781ff8-6907-4f06-9ce6-d1f4575b3f71 https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=36781ff8-6907-4f06-9ce6-d1f4575b3f71 Page 2 of 2