LokiBot Order Detail Subject Phishing Email

Strike ID:
P20-1hl31
CVSS:
4.3 CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
False Positive:
f
Variants:
1
Year:
2017

Description

This strike simulates a phishing email that has been seen in the wild contain malicious file which will download LokiBot malware. This specific phishing attempt is related to the 'LokiBot Oct 2017 Malware Campaign', which attempts to entice a user to open the malicious file-attachment using a Subject of 'News about your order'.

References