LCPDot

First seen
2018-05-15 00:00:00
Malware type
trojan
Family
Malware family
Profile updated
2026-07-07 12:46:57

Targeted industries: government-and-public-sector financial-services

Targeted regions: country_code:us country_code:ru

Context

LCPDot is a trojan used primarily in cyber-espionage campaigns targeting government and financial sectors. It has been observed in attacks predominantly in the United States and Russia.

Detection coverage

  • 2 YARA rules

Detection rules

  • DITEKSHEN_MALWARE_Win_Lcpdot (yara-rule)
  • MALPEDIA_Win_Lcpdot_Auto (yara-rule)

Reports & references

  • blogs.jpcert.or.jp — Lazarus Malware2 (report)
  • vblocalhost.com — Vb2021 Park (report)
  • cn.ahnlab.com — Asec%20Report Vol.102 Eng%20(4) (report)
  • Kaspersky — 106195 (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Lcpdot (report)
  • research.nccgroup.com — North Koreas Lazarus And Their Initial Access Trade Craft Using Social Media And Social Engineering (report)
  • global.ahnlab.com — Asec%20Report Vol.102 Eng%20(4) (report)

External references