Cova

First seen
2023-02-15 00:00:00
Malware type
botnet, trojan
Family
Malware family
Profile updated
2026-07-07 14:54:48

Targeted industries: financial-services government-and-public-sector

Targeted regions: country_code:us country_code:gb country_code:ca

Context

Cova is a type of banking trojan that targets financial institutions and public sector organizations primarily in English-speaking countries. Its capabilities include stealing sensitive information and forming part of a botnet for coordinated attacks.

Detection coverage

  • 1 YARA rules

Detection rules

  • MALPEDIA_Win_Cova_Auto (yara-rule)

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Cova (report)
  • bitsight.com — Cova And Nosu New Loader Spreads New Stealer (report)

External references