MyloBot
Aliases: FakeDGA, WillExec
- First seen
- 2018-06-01 00:00:00
- Malware type
- botnet, trojan
- Family
- Malware family
- Last IoC activity
- 2026-07-21 14:09:48
- Profile updated
- 2026-07-07 15:12:58
Targeted industries: financial-services government-and-public-sector healthcare-and-pharmaceutical retail-and-hospitality technology-and-telecommunications
Context
According to PCrisk, MyloBot is a high-risk trojan-type virus that allows cyber criminals to control the infected machine. MyloBot can be considered as a botnet, since all infected computers are connected to a single network. Depending on cyber criminals' goals, infected machines might be misused or have additional infections applied.
Detection coverage
- 1 YARA rules
Detection rules
- MALPEDIA_Win_Mylobot_Auto (yara-rule)
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Win.Mylobot (report)
- freebuf.com — 153424 (report)
- blogs.akamai.com — Detecting Mylobot Unseen Dga Based Malware Using Deep Learning (report)
- Cisco Talos — Threat Round Up 1020 1017 (report)
- deepinstinct.com — Meet Mylobot A New Highly Sophisticated Never Seen Before Botnet Thats Out In The Wild (report)
- ti.qianxin.com — Analysis Of Recent Activities Of The Mylobot Botnet En (report)
- blog.centurylink.com — Mylobot Continues Global Infections (report)
- github.com — 36 (report)
- bitsight.com — Mylobot Investigating Proxy Botnet (report)