WMIC - Tool

Threat entity extracted from intelligence sources

Frequency
10
occurrences
First Seen
November 10, 2025
Last Seen
July 19, 2026

WMIC is a tool tracked across 10 threat clusters and 10 intelligence report mentions on ThreatCluster. First observed November 10, 2025; most recent activity July 19, 2026.

Related Threat Clusters

Recent Intelligence Reports

  • New Spirals Ransomware Deployed Across South Asian IT Firm in Under 24 Hours — www.security.com · July 19, 2026
  • Go-Based Gentlemen Ransomware Uses PsExec, WMIC, and PowerShell Remoting for ... — Gbhackers · July 6, 2026
  • Go-Based Gentlemen Ransomware Uses PsExec, WMIC, and PowerShell Remoting for Network Propagation — Gbhackers · July 6, 2026
  • Attackers Downgrade WDigest Protection to Dump Plaintext Credentials With Mimikatz — Gbhackers · July 2, 2026
  • Mistic Malware Blends Into Microsoft Endpoint Components Using Malicious EndpointDlp.dll — Gbhackers · June 30, 2026
  • ModeloRAT and Mistic Backdoor Activity Linked to Ransomware Initial Access Broker — Gbhackers · June 24, 2026
  • China-Aligned Attackers Use ShadowPad, IOX Proxy, and WMIC in Multi — Cybersecuritynews · May 1, 2026
  • Tr Kyber Ransomware Double Trouble Windows Esxi Attacks Explained — www.rapid7.com · April 25, 2026

CVSS v3.1 Breakdown