Jaku

Aliases: C3PRO-RACOON, EQUINOX, KCNA Infostealer, Reconcyc

First seen
2015-04-01 00:00:00
Malware type
botnet, credential-stealer
Family
Malware family
Profile updated
2026-07-07 15:07:38

Targeted industries: government-and-public-sector education-and-nonprofits

Targeted regions: country_code:kr country_code:cn

Context

Jaku is a sophisticated botnet known for targeting specific regions and sectors for espionage purposes. It employs data exfiltration techniques to gather sensitive information from its victims.

Detection coverage

  • 1 YARA rules

Detection rules

  • MALPEDIA_Win_Jaku_Auto (yara-rule)

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Jaku (report)
  • brighttalk.com — 538775 (report)
  • forcepoint.com — Report Jaku Analysis Of Botnet Campaign En 0 (report)
  • www-01.ibm.com — Docview.Wss (report)
  • Kaspersky — 68978 (report)

External references