Jaku
Aliases: C3PRO-RACOON, EQUINOX, KCNA Infostealer, Reconcyc
- First seen
- 2015-04-01 00:00:00
- Malware type
- botnet, credential-stealer
- Family
- Malware family
- Profile updated
- 2026-07-07 15:07:38
Targeted industries: government-and-public-sector education-and-nonprofits
Targeted regions: country_code:kr country_code:cn
Context
Jaku is a sophisticated botnet known for targeting specific regions and sectors for espionage purposes. It employs data exfiltration techniques to gather sensitive information from its victims.
Detection coverage
- 1 YARA rules
Detection rules
- MALPEDIA_Win_Jaku_Auto (yara-rule)
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Win.Jaku (report)
- brighttalk.com — 538775 (report)
- forcepoint.com — Report Jaku Analysis Of Botnet Campaign En 0 (report)
- www-01.ibm.com — Docview.Wss (report)
- Kaspersky — 68978 (report)