TamperedChef
- First seen
- 2020-07-15 00:00:00
- Malware type
- trojan, backdoor
- Family
- Malware family
- Last IoC activity
- 2026-07-18 20:46:08
- Profile updated
- 2026-07-07 15:22:21
Targeted industries: government-and-public-sector technology-and-telecommunications
Targeted regions: country_code:us country_code:cn
Context
TamperedChef is a sophisticated piece of malware that acts as both a trojan and a backdoor. It is known for targeting government and technology sectors, specifically in the United States and China. The malware allows attackers to remotely access and control the infected systems.
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Win.Tampered Chef (report)
- Trend Micro — Evilai (report)
- controlware.de — Controlware Beyond Potentially Unwanted Apps 2025 (report)
- gbhackers.com — Threat Actors Weaponize Pdf Editor Trojan (report)
- truesec.com — Tamperedchef The Bad Pdf Editor (report)
- medium.com — Hunting For Tamperedchef Infostealer 825Dc94Cee00 (report)
- gdatasoftware.com — 38257 Appsuite Pdf Editor Backdoor Analysis (report)
- gdatasoftware.com — 38247 Justaskjacky Ai Trojan Horse Comeback (report)