ZiyangRAT

First seen
2018-05-01 00:00:00
Malware type
rat
Family
Malware family
Profile updated
2026-07-07 14:33:28

Targeted industries: government-and-public-sector technology-and-telecommunications

Targeted regions: country_code:cn country_code:hk country_code:tw

Context

ZiyangRAT is a remote access trojan often used in cyber espionage campaigns targeting governmental and technology sectors, particularly in East Asia. The malware provides attackers with capabilities to exfiltrate data and execute remote commands on compromised systems.

Detection coverage

  • 1 YARA rules

Detection rules

  • MALPEDIA_Win_Ziyangrat_Auto (yara-rule)

Reports & references

  • secureworks.com — Analysis Of Dhs Nccic Indicators (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Ziyangrat (report)

External references