Remote Access Trojan

njRAT

First seen: 2012-01 • Status: active

Currently Active Threat

njRAT gives hackers full control of your computer. It's been around for over a decade.

Overview

njRAT is a widely available remote access trojan popular in the Middle East.

Also Known As

Bladabindi, Njw0rm

How It Spreads

  • Phishing
  • USB drives
  • Cracked software

What It Does

  • Remote desktop control
  • Keylogging
  • File theft
  • Webcam access

Is your business exposed?

Target Platforms

Windows

Detection Tips

  • Monitor for RAT behavior
  • Detect keylogging

MITRE ATT&CK Techniques

T1566, T1059, T1056

If You're Infected

  1. 1.

    Remove RAT and change all credentials

Related Malware

Asyncrat, Remcos

Is your business exposed?

Check if your company data is circulating on the dark web

Free scan • No credit card required