MyloBot

Aliases: FakeDGA, WillExec

First seen
2018-06-01 00:00:00
Malware type
botnet, trojan
Family
Malware family
Last IoC activity
2026-07-21 14:09:48
Profile updated
2026-07-07 15:12:58

Targeted industries: financial-services government-and-public-sector healthcare-and-pharmaceutical retail-and-hospitality technology-and-telecommunications

Context

According to PCrisk, MyloBot is a high-risk trojan-type virus that allows cyber criminals to control the infected machine. MyloBot can be considered as a botnet, since all infected computers are connected to a single network. Depending on cyber criminals' goals, infected machines might be misused or have additional infections applied.

Detection coverage

  • 1 YARA rules

Detection rules

  • MALPEDIA_Win_Mylobot_Auto (yara-rule)

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Mylobot (report)
  • freebuf.com — 153424 (report)
  • blogs.akamai.com — Detecting Mylobot Unseen Dga Based Malware Using Deep Learning (report)
  • Cisco Talos — Threat Round Up 1020 1017 (report)
  • deepinstinct.com — Meet Mylobot A New Highly Sophisticated Never Seen Before Botnet Thats Out In The Wild (report)
  • ti.qianxin.com — Analysis Of Recent Activities Of The Mylobot Botnet En (report)
  • blog.centurylink.com — Mylobot Continues Global Infections (report)
  • github.com — 36 (report)
  • bitsight.com — Mylobot Investigating Proxy Botnet (report)

External references