Global malware activity surged significantly over the past week, with remote access trojans (RATs), information stealers, and loaders experiencing notable weekly gains as reported by ANY.RUN This article explores malware threats week. . AsyncRAT maintained its position atop the chart with a modest increase of two samples from the previous week, making it one of the most consistently deployed .NET-based remote access trojans in today’s threat landscape.
Recent campaigns have demonstrated AsyncRAT operators abusing trusted cloud infrastructure like Cloudflare’s free-tier services and TryCloudflare tunnels to host payload delivery servers, making conventional security tools harder to detect. The top 10 malware threats of the week include Remcos RAT, which saw a significant increase in uploads from 59 samples to 196 total uploads, highlighting an intensifying wave of espionage and surveillance-driven campaigns.
Newer variants observed in early 2026 have shifted toward real-time surveillance, streaming live webcam footage and transmitting keystrokes instantly rather than waiting to exfiltrate stored data, effectively turning infected machines into live monitoring feeds for attackers. Malware Family Weekly Sample Uploads Show Significant Volume Increases in Primary Threat Vector AsyncRAT saw a 21% surge in uploads this week, reaching 211 samples and now featuring Remote Access Trojan (RAT) capability using .NET. Despite this modest decrease, Snake remains in the top ten families, indicating that even minor changes can still have substantial impacts on overall threat trends.












