skip to Main Content

Cybercrime, new Lokibot campaign via purchase inquiry

Malware Hunter JAMESWT Technical Analysis

New Lokibot campaign via purchase inquiry. The email rar attachment contains an exe file: the malware itself

Lokibot hides inside an email with the subject “RE: Purchase Inquiry: KPC / PU-231 (MECH) NBI / 20-22”.

The rar attachment contains an exe file: the malware itself. Lokibot (aka Loki PWS and Loki-bot) is an information-stealer, which acquires credentials, cryptocurrency wallets and other types of data.

Malware C2

Back To Top