METALJACK

Aliases: denesRAT

First seen
2020-09-01 00:00:00
Malware type
rat
Family
Malware family
Profile updated
2026-07-07 12:38:50

Targeted industries: financial-services government-and-public-sector energy-and-utilities

Targeted regions: country_code:sa country_code:ae

Context

METALJACK, also known as denesRAT, is a Remote Access Trojan that primarily targets organizations in the financial, governmental, and energy sectors within Middle Eastern countries. It is known for its ability to execute commands remotely, exfiltrate data, and manipulate system operations.

Reports & references

  • pwc.co.uk — Pwc Cyber Threats 2020 A Year In Retrospect (report)
  • go.recordedfuture.com — Cta 2020 1110 (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Metaljack (report)
  • blog.viettelcybersecurity.com — Apt32 Deobfuscation Arsenal Deobfuscating Mot Vai Loai Obfucation Toolkit Cua Apt32 Phan 1 (report)
  • ti.qianxin.com — Coronavirus Analysis Of Global Outbreak Related Cyber Attacks (report)
  • Mandiant — Apt32 Targeting Chinese Government In Covid 19 Related Espionage (report)
  • s.tencent.com — 944 (report)
  • secrss.com — 17900 (report)
  • youtube.com — Watch (report)
  • m.threatbook.cn — 2527 (report)

External references