METALJACK
Aliases: denesRAT
- First seen
- 2020-09-01 00:00:00
- Malware type
- rat
- Family
- Malware family
- Profile updated
- 2026-07-07 12:38:50
Targeted industries: financial-services government-and-public-sector energy-and-utilities
Targeted regions: country_code:sa country_code:ae
Context
METALJACK, also known as denesRAT, is a Remote Access Trojan that primarily targets organizations in the financial, governmental, and energy sectors within Middle Eastern countries. It is known for its ability to execute commands remotely, exfiltrate data, and manipulate system operations.
Reports & references
- pwc.co.uk — Pwc Cyber Threats 2020 A Year In Retrospect (report)
- go.recordedfuture.com — Cta 2020 1110 (report)
- malpedia.caad.fkie.fraunhofer.de — Win.Metaljack (report)
- blog.viettelcybersecurity.com — Apt32 Deobfuscation Arsenal Deobfuscating Mot Vai Loai Obfucation Toolkit Cua Apt32 Phan 1 (report)
- ti.qianxin.com — Coronavirus Analysis Of Global Outbreak Related Cyber Attacks (report)
- Mandiant — Apt32 Targeting Chinese Government In Covid 19 Related Espionage (report)
- s.tencent.com — 944 (report)
- secrss.com — 17900 (report)
- youtube.com — Watch (report)
- m.threatbook.cn — 2527 (report)