Jolob

First seen
2017-05-01 00:00:00
Malware type
backdoor
Family
Malware family
Profile updated
2026-07-07 15:07:54

Targeted industries: government-and-public-sector technology-and-telecommunications

Context

Jolob is a backdoor malware typically used by advanced persistent threat groups to conduct cyber-espionage operations. It has been known for its stealthy capabilities and is primarily targeting government and technology sectors.

Detection coverage

  • 1 YARA rules

Detection rules

  • MALPEDIA_Win_Jolob_Auto (yara-rule)

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Jolob (report)
  • pwc.blogs.com — Scanbox Framework Whos Affected And Whos Using It 1 (report)

External references