ZiyangRAT
- First seen
- 2018-05-01 00:00:00
- Malware type
- rat
- Family
- Malware family
- Profile updated
- 2026-07-07 14:33:28
Targeted industries: government-and-public-sector technology-and-telecommunications
Targeted regions: country_code:cn country_code:hk country_code:tw
Context
ZiyangRAT is a remote access trojan often used in cyber espionage campaigns targeting governmental and technology sectors, particularly in East Asia. The malware provides attackers with capabilities to exfiltrate data and execute remote commands on compromised systems.
Detection coverage
- 1 YARA rules
Detection rules
- MALPEDIA_Win_Ziyangrat_Auto (yara-rule)
Reports & references
- secureworks.com — Analysis Of Dhs Nccic Indicators (report)
- malpedia.caad.fkie.fraunhofer.de — Win.Ziyangrat (report)