Mocky LNK

First seen
2022-09-15 00:00:00
Malware type
downloader, trojan
Profile updated
2026-07-07 14:39:24

Targeted industries: financial-services government-and-public-sector technology-and-telecommunications

Context

LNK files used to lure and orchestrate execution of various scripts, interacting with the Mocky API service.

Reports & references

  • cert.ssi.gouv.fr — Certfr 2025 Cti 007 (report)
  • cert.ssi.gouv.fr — Certfr 2023 Cti 009 (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Mocky Lnk (report)
  • go.recordedfuture.com — Cta Ru 2024 0530 (report)
  • CERT-UA — 4492467 (report)
  • zscaler.com — Steal It Campaign (report)
  • recordedfuture.com — Grus Bluedelta Targets Key Networks In Europe With Multi Phase Espionage Camp (report)
  • Trend Micro — Pawn Storm Uses Brute Force And Stealth (report)

External references