Skip to content

Malware

MoleNet

MoleNet is a .NET downloader malware used by the Molerats group in targeted attacks in the Middle East.

MoleNet is a Windows malware family operated by Molerats.

Background

MoleNet is a .NET downloader that the Molerats group deploys in targeted Middle East operations. Prior to retrieving further payloads, it gathers details about the infected host through WMI queries and relays them back to its operators. Although it surfaced in 2020, Cybereason researchers demonstrated it had been in use since at least 2019, backed by infrastructure running since 2017.


Source: Malpedia (Fraunhofer FKIE).